VYPR
High severity7.5NVD Advisory· Published Nov 11, 2019· Updated Jun 17, 2026

CVE-2019-18836

CVE-2019-18836

Description

Envoy 1.12.0 allows a remote denial of service because of resource loops, as demonstrated by a single idle TCP connection being able to keep a worker thread in an infinite busy loop when continue_on_listener_filters_timeout is used."

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:a:envoyproxy:envoy:1.12.0:*:*:*:*:*:*:*
  • cpe:2.3:a:istio:istio:*:*:*:*:*:*:*:*
    Range: >=1.3.0,<=1.3.3
  • Envoy/Envoydescription
  • Envoy/envoyllm-fuzzy
    Range: <1.12.0

Patches

Vulnerability mechanics

References

4

News mentions

0

No linked articles in our index yet.