HTTP2ToRawGRPCServerCodec in gRPC Swift 1.1.1 and earlier allows remote attackers to deny service via the delivery of many small messages within a single HTTP/2 frame, leading to Uncontrolled Recursion and stack consumption.
| Package (Ecosystem) | Introduced | Fixed | Limit |
|---|---|---|---|
| github.com/grpc/grpc-swift(SwiftURL) | 0 | 1.2.0 | N/A |
CVSS Metrics