Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:21426
HistorySep 04, 2019 - 12:13 p.m.

Denial Of Service (DoS) Via Reset Signal Floods

2019-09-0412:13:52
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
31

0.821 High

EPSS

Percentile

98.4%

github.com/grpc/grpc-go is vulnerable to denial of service (DoS) attacks. The attack can be triggered by sending a flood of reset signals by a HTTP/2 peer, leading to an excessive data queue and causing high CPU and resource consumption.

References