Database/Container, Kubernetes & orchestration
Envoy: stale RequestDecoder pointer after HTTP/3 stream recreation crashes the proxy
Impact
HttpDatagramHandler caches the current RequestDecoder when the Capsule Protocol is enabled. Stream recreation - an internal redirect, for instance - replaces the ActiveStream without updating that cached pointer, so a following HTTP/3 datagram dispatches through a freed decoder and the process dies. An unauthenticated client can therefore drop an Envoy instance at will, taking out every connection it was carrying. On a GPU fleet that fronts inference endpoints or mesh traffic through Envoy, repeated crashes mean sustained denial of service on in-flight requests; only deployments with HTTP/3 datagrams plus Capsule Protocol enabled and a stream-recreation path configured are reachable.
Who can reach it
Any unauthenticated client that can open an HTTP/3 connection to a listener with datagrams and Capsule Protocol enabled, where the request hits a stream-recreation path such as an internal redirect.
What to do
Upgrade Envoy to 1.36.10, 1.37.6, 1.38.4 or 1.39.1 and restart the proxy; rolling restart, no node drain. If patching has to wait, disable HTTP/3 datagram / Capsule Protocol support or the internal-redirect policy on the affected routes.
References
Related entries
- Envoy: malformed upstream response trailers dispatch through a freed decoder and crash the proxyCVE-2026-73513 · Envoy (oghttp2 upstream HTTP/2 codec, ClientStreamImpl)High
- Envoy: request smuggling via non-WebSocket HTTP upgrade leaks responses to other clientsCVE-2026-73548 · Envoy (HTTP/1.1 upstream connection pool, non-WebSocket upgrade path)High
- Envoy: duplicate Host headers escape request header limits and let a client OOM-kill the proxyCVE-2026-73550 · Envoy (HTTP/2 duplicate Host header handling, header-limit accounting)High
- Envoy: non-UTF-8 header byte makes safe_regex RBAC rules read as no-match, bypassing DENYCVE-2026-73552 · Envoy (HTTP RBAC safe_regex matcher, RE2 UTF-8 subject semantics)High
- Envoy: path-parameter canonicalization mismatch bypasses path-based RBAC DENY rulesCVE-2026-73553 · Envoy (RBAC url_path matcher vs ignore_path_parameters_in_path_matching)High
- Skipper: OPA body policies authorize oversized requests because truncated_body is derived from Content-LengthCVE-2026-86043 · Skipper HTTP router (opaAuthorizeRequestWithBody / OPA body truncation)High
This entry is curated: imported from vendor advisories with machine assistance, not yet individually verified. Confirm against your vendor's advisory before acting, and report anything wrong.