Description
Cloud Foundry Routing (Gorouter) versions prior to 0.206.0 allow a malicious developer with "cf push" access to cause denial-of-service to the CF cluster by pushing an app that returns specially crafted HTTP responses that crash the Gorouters.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-26589 | Cloud Foundry Routing (Gorouter) versions prior to 0.206.0 allow a malicious developer with "cf push" access to cause denial-of-service to the CF cluster by pushing an app that returns specially crafted HTTP responses that crash the Gorouters. |
References
| Link | Providers |
|---|---|
| https://www.cloudfoundry.org/blog/cve-2020-5420 |
|
History
No history.
Status: PUBLISHED
Assigner: pivotal
Published:
Updated: 2024-09-17T02:06:44.110Z
Reserved: 2020-01-03T00:00:00.000Z
Link: CVE-2020-5420
No data.
Status : Modified
Published: 2020-09-03T01:15:10.857
Modified: 2024-11-21T05:34:08.187
Link: CVE-2020-5420
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD