Remote Denial of Service Vulnerability in gRPC Swift by Google
CVE-2021-36155
7.5HIGH
What is CVE-2021-36155?
The LengthPrefixedMessageReader in gRPC Swift versions up to 1.1.0 has a security flaw that allows remote attackers to allocate buffers of arbitrary length. This vulnerability can lead to uncontrolled resource consumption on the server, potentially causing a denial of service and disrupting legitimate users' access to the service. It is important for users of gRPC Swift to update to the latest version to mitigate this risk.