What is CVE-2026-73500?
etcd is an open-source distributed key-value store used for system data. This vulnerability allows a network attacker to exhaust service resources by opening many TCP connections to a TLS listener without sending a ClientHello. Apply security updates by upgrading etcd to versions 3.5.33, 3.6.14, or 3.7.1 to fix the issue.
Azərbaycanca: etcd paylanmış sistemlərdə məlumat saxlamaq üçün istifadə edilən açıq mənbəli alətdir. Bu boşluq şəbəkə hücumçusuna TLS dinləyicisinə çoxlu TCP bağlantısı açaraq ClientHello göndərməməklə xidmət resurslarını tükətməyə imkan verir. Təhlükəsizlik yeniləmələrini tətbiq edərək etcd-ni 3.5.33, 3.6.14 və ya 3.7.1 versiyalarına yüksəltmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-400
FAQ2
How can I protect against CVE-2026-73500 in etcd?
To protect against this vulnerability, it is recommended to upgrade etcd to versions 3.5.33, 3.6.14, or 3.7.1.
What type of attack does CVE-2026-73500 enable in etcd?
This vulnerability allows a network attacker to exhaust service resources by opening many TCP connections to a TLS listener without sending a ClientHello.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.