Описание
ELSA-2020-0703: http-parser security update (IMPORTANT)
[2.7.1-8.2]
- Do not break ABI with CVE-2019-15605 fix
[2.7.1-8.1]
- Resolves: CVE-2019-15605 http-parser: nodejs: HTTP request smuggling using malformed Transfer-Encoding header
Обновленные пакеты
Oracle Linux 7
Oracle Linux aarch64
http-parser
2.7.1-8.el7_7.2
http-parser-devel
2.7.1-8.el7_7.2
Oracle Linux x86_64
http-parser
2.7.1-8.el7_7.2
http-parser-devel
2.7.1-8.el7_7.2
Связанные CVE
Связанные уязвимости
HTTP request smuggling in Node.js 10, 12, and 13 causes malicious payload delivery when transfer-encoding is malformed
HTTP request smuggling in Node.js 10, 12, and 13 causes malicious payload delivery when transfer-encoding is malformed
HTTP request smuggling in Node.js 10, 12, and 13 causes malicious payload delivery when transfer-encoding is malformed
HTTP request smuggling in Node.js 10, 12, and 13 causes malicious payl ...
HTTP request smuggling in Node.js 10, 12, and 13 causes malicious payload delivery when transfer-encoding is malformed