Envoy can crash due to uncaught nlohmann JSON exception
Vulnerability Description
Envoy is a cloud-native, open source edge and service proxy. Due to how Envoy invoked the nlohmann JSON library, the library could throw an uncaught exception from downstream data if incomplete UTF-8 strings were serialized. The uncaught exception would cause Envoy to crash.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-34363
Credits & Attribution
No credits recorded in the NVD database.
More from envoyproxy
View All →Affected Vendor
envoyproxy
View all reports →