GCP-2026-035
Cybersecurity Classified by Officially
Published: 2026-06-08
Description
Description Severity NotesA vulnerability was found in Envoy where HTTP/2 downstream request processing allow an unauthenticated remote client to trigger excessive memory consumption, potentially resulting in OOM termination of the Envoy process and denial of service.
For instructions and more details, see the Cloud Service Mesh security bulletin.
HighThis is an extract. The publication continues at the source.
Read the original at the source: https://docs.cloud.google.com/support/bulletins/index#gcp-2026-035
Officially imported this from Google’s own source and shows an extract. If you work there, claiming the profile and verifying the domain lets you choose to show the full text here.
Provenance
- Organization
- Google — imported from official source
- Official source
- https://cloud.google.com/feeds/google-cloud-security-bulletins.xml RSS
- Imported
- September 18, 2026 09:42
- Versions
- 1 recorded
- Identity
tag:google.com,2016:google-cloud-security-bulletins#gcp-2026-035