CVE-2024-27101
Integer overflow in chunking helper causes dispatching to miss elements or panic.
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (0.46%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
SpiceDB is an open source, Google Zanzibar-inspired database for creating and managing security-critical application permissions. Integer overflow in chunking helper causes dispatching to miss elements or panic. Any SpiceDB cluster with any schema where a resource being checked has more than 65535 relationships for the same resource and subject type is affected by this problem. The CheckPermission, BulkCheckPermission, and LookupSubjects API methods are affected. This vulnerability is fixed in 1.29.2.
- CVSS 3.1
- 9.1 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:H
- EPSS
- 0.46% probability · 38th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-190
- Affected
- authzed/spicedb
- Source
- security-advisories@github.com
References
- https://github.com/authzed/spicedb/commit/ef443c442b96909694390324a99849b0407007fePatch
- https://github.com/authzed/spicedb/security/advisories/GHSA-h3m7-rqc4-7h9pVendor Advisory
- https://github.com/authzed/spicedb/commit/ef443c442b96909694390324a99849b0407007fePatch
- https://github.com/authzed/spicedb/security/advisories/GHSA-h3m7-rqc4-7h9pVendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.