Affected gRPC Swift clients and servers are vulnerable to uncontrolled resource consumption attacks. Excessive memory may be allocated when parsing messages. This can lead to a denial of service.
The problem has been fixed in 1.2.0.
No workaround is available. Users must upgrade.
{
"nvd_published_at": "2021-07-09T12:15:00Z",
"severity": "HIGH",
"github_reviewed_at": "2023-06-09T19:32:11Z",
"github_reviewed": true,
"cwe_ids": [
"CWE-120",
"CWE-770"
]
}