Описание
An issue was discovered in the hyper crate before 0.12.34 for Rust. HTTP request smuggling can occur. Remote code execution can occur in certain situations with an HTTP server on the loopback interface.
Ссылки
- PatchThird Party Advisory
- PatchThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.12.34 (исключая)
cpe:2.3:a:hyper:hyper:*:*:*:*:*:rust:*:*
EPSS
Процентиль: 83%
0.02006
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-444
Связанные уязвимости
CVSS3: 9.8
ubuntu
около 5 лет назад
An issue was discovered in the hyper crate before 0.12.34 for Rust. HTTP request smuggling can occur. Remote code execution can occur in certain situations with an HTTP server on the loopback interface.
CVSS3: 9.8
debian
около 5 лет назад
An issue was discovered in the hyper crate before 0.12.34 for Rust. HT ...
EPSS
Процентиль: 83%
0.02006
Низкий
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-444