Description
No description is available for this CVE.
Published: n/a
Score: 7.5 High
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

A use‑after‑free flaw has been identified in Envoy’s HTTP/3 handling of late datagrams. This weakness, classified as CWE‑416, may allow an attacker to trigger undefined behavior that could be leveraged to execute arbitrary code on the affected system. The exact impact depends on the system state and the attacker’s ability to send crafted HTTP/3 traffic, but the nature of a use‑after‑free indicates potential critical compromise.

Affected Systems

The vulnerability targets Envoy’s HTTP/3 implementation; specific product versions are not listed in the available data. The flaw exists wherever Envoy processes late UDP datagrams for HTTP/3 connections.

Risk and Exploitability

With a CVSS score of 7.5, the flaw is considered high severity. No EPSS score is available, and the vulnerability is not listed in CISA KEV. The likely attack vector is remote over the network, where a malicious actor sends specially crafted HTTP/3 packets to an Envoy instance that can trigger the vulnerable code path.

Generated by OpenCVE AI on September 1, 2026 at 14:14 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update Envoy to the latest patch that addresses the HTTP/3 use‑after‑free flaw.
  • If the patch cannot be applied immediately, disable HTTP/3 support in Envoy configuration to eliminate exposure.
  • Monitor inbound HTTP/3 traffic for anomalous patterns and enforce strict rate limiting or firewall rules to mitigate potential exploitation attempts.

Generated by OpenCVE AI on September 1, 2026 at 14:14 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 01 Sep 2026 12:15:00 +0000

Type Values Removed Values Added
Description No description is available for this CVE.
Title envoy: envoy: HTTP/3 use-after-free when processing late datagrams
Weaknesses CWE-416
References
Metrics threat_severity

None

cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H'}

threat_severity

Important


Subscriptions

No data.

cve-icon MITRE

No data.

cve-icon Vulnrichment

No data.

cve-icon NVD

No data.

cve-icon Redhat

Severity : Important

Publid Date: 2026-08-26T13:00:00Z

Links: CVE-2026-73512 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-09-01T14:30:18Z

Weaknesses