Skip to content

TLS inspector bypass

Moderate
lizan published GHSA-c4g8-7grc-5wvx Mar 3, 2020

Package

Envoy

Affected versions

< 1.13.0

Patched versions

1.13.1, 1.12.3

Description

Vulnerability type

Incorrect Access Control

Attack type

Remote

Impact

Escalation of Privileges

Discoverer(s)/Credits

https://github.com/turbotankist

Description (brief; included in CVE)

TLS inspector could have been bypassed (not recognized as a TLS client) by a client using only TLS 1.3. Because TLS extensions (SNI, ALPN) were not inspected, those connections might have been matched to a wrong filter chain, possibly bypassing some security restrictions in the process.

Severity

Moderate

CVE ID

CVE-2020-8660

Weaknesses

No CWEs

Credits