Envoy is a cloud-native high-performance proxy. In versions prior to 1.22.1 the OAuth filter implementation does not include a mechanism for validating access tokens, so by design when the HMAC signed cookie is missing a full authentication flow should be triggered. However, the current implementation assumes that access tokens are always validated thus allowing access in the presence of any access token attached to the request. Users are advised to upgrade. There is no known workaround for this issue.
CVSS Details
- CVSS 3.1 Base Score: 10
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Oracle_linux | — | Upgrade kubeadmUpgrade istio-istioctlUpgrade cri-oUpgrade olcne-istio-chartUpgrade kubectlUpgrade olcne-api-serverUpgrade etcdUpgrade kataUpgrade olcne-utilsUpgrade olcne-oci-csi-chartUpgrade olcne-grafana-chartUpgrade cri-toolsUpgrade olcne-oci-ccm-chartUpgrade olcnectlUpgrade olcne-prometheus-chartUpgrade kubeletUpgrade olcne-gluster-chartUpgrade istioUpgrade olcne-olm-chartUpgrade olcne-agentUpgrade olcne-nginxUpgrade olcne-metallb-chart | Jul 12, 2022 | Jun 9, 2022 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub