Use-after-free in envoy - CVE-2026-50572
Published: August 26, 2026
Vulnerability details
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to use-after-free in RawHttpClientImpl::onSuccess in the ext_authz HTTP client implementation when processing ext_authz HTTP responses. A remote attacker can send a specially crafted response to cause a denial of service.
The issue was observed when Envoy used an HTTP/1.1 service for ext_authz requests.
Affected software
Istio
How to mitigate CVE-2026-50572
Istio - addressed in versions 1.29.7, 1.30.4