CVE-2026-73549
Błąd w Envoy powoduje awarię procesu przy przetwarzaniu adresów IPv6 w niektórych warunkach.
Envoy is an open source edge and service proxy designed for cloud-native applications. Prior to 1.36.10, 1.37.6, 1.38.4, and 1.39.1, Envoy's Utility::copyInternetAddressAndPort and QUIC client-address paths reconstruct scoped IPv6 addresses through addressAsString and Ipv6Instance. The string includes a percent scope identifier that inet_pton cannot parse, causing an exception or abort. Kernel-provided scoped IPv6 destinations in ORIGINAL_DST transparent-proxy deployments, and affected QUIC connection paths, can therefore terminate the process. The relevant scope boundary is that the HTTP use_http_header override rejects scoped addresses earlier; the advisory's crash path requires a kernel-provided original destination or the affected QUIC path. This issue is fixed in versions 1.36.10, 1.37.6, 1.38.4, and 1.39.1.
| Źródło | Wartość |
|---|---|
| NVD – CVSS | 5.3 |
| CISA KEV (aktywnie wykorzystywane) | Nie |
| FIRST EPSS (prawdopodobieństwo exploita) | 0.6% |
| Opublikowano (NVD) | 2026-09-21 20:17:28 UTC |
| Ostatnia modyfikacja (NVD) | 2026-10-05 14:09:22 UTC |
- https://github.com/envoyproxy/envoy/commit/109e5a5b08ad10d99074cefd55a747a16ee64da7 ([email protected]) [Patch]
- https://github.com/envoyproxy/envoy/commit/59b1744a6cb62746db418ac06fc5e359fd25fdb7 ([email protected]) [Patch]
- https://github.com/envoyproxy/envoy/commit/6e39f4c94deff7a60d382c2d95883e0ea49ff691 ([email protected]) [Patch]
- https://github.com/envoyproxy/envoy/commit/ab2dca2d65b079768230a7c3d825afeefa330215 ([email protected]) [Patch]
- https://github.com/envoyproxy/envoy/releases/tag/v1.36.10 ([email protected]) [Release Notes]
- https://github.com/envoyproxy/envoy/releases/tag/v1.37.6 ([email protected]) [Release Notes]
- https://github.com/envoyproxy/envoy/releases/tag/v1.38.4 ([email protected]) [Release Notes]
- https://github.com/envoyproxy/envoy/releases/tag/v1.39.1 ([email protected]) [Release Notes]
- https://github.com/envoyproxy/envoy/security/advisories/GHSA-jp5f-qr64-c9vw ([email protected]) [Vendor Advisory, Mitigation]