VYPR
Medium severity5.9NVD Advisory· Published May 26, 2023· Updated Jun 17, 2026

CVE-2023-20882

CVE-2023-20882

Description

In Cloud foundry routing release versions from 0.262.0 and prior to 0.266.0,a bug in the gorouter process can lead to a denial of service of applications hosted on Cloud Foundry. Under the right circumstances, when client connections are closed prematurely, gorouter marks the currently selected backend as failed and removes it from the routing pool.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

5
  • cpe:2.3:a:cloudfoundry:cf-deployment:*:*:*:*:*:*:*:*
    Range: >=27.4.0,<29.0.0
  • cpe:2.3:a:cloudfoundry:routing_release:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:cloudfoundry:routing_release:*:*:*:*:*:*:*:*range: >=0.262.0,<0.266.0
    • (no CPE)range: 0.262.0 - 0.266.0
  • Cloud foundry/routing releasedescription
  • Range: 0.262.0 - 0.266.0

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.