Security Advisory

CVE-2020-5420

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2020-09-03 01:10:16
Last updated 2024-09-17 02:06:44
Assigner pivotal
CVSS score 7.7
State PUBLISHED

Description

Cloud Foundry Routing (Gorouter) versions prior to 0.206.0 allow a malicious developer with "cf push" access to cause denial-of-service to the CF cluster by pushing an app that returns specially crafted HTTP responses that crash the Gorouters.