Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-18074

Опубликовано: 29 июн. 2018
Источник: redhat
CVSS3: 2.6
EPSS Низкий

Описание

The Requests package before 2.20.0 for Python sends an HTTP Authorization header to an http URI upon receiving a same-hostname https-to-http redirect, which makes it easier for remote attackers to discover credentials by sniffing the network.

A credentials-exposure flaw was found in python-requests, where if a request with authentication is redirected (302) from an HTTPS endpoint to an HTTP endpoint on the same host, the Authorization header is not stripped and the credentials can be read in plain text. A man-in-the-middle attacker could exploit this flaw to obtain a user's valid credentials.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6python-requestsWill not fix
Red Hat Enterprise Linux 8python36:3.6/python-virtualenvAffected
Red Hat Enterprise Linux 8python-requestsNot affected
Red Hat OpenShift Container Platform 3.9python-requestsAffected
Red Hat OpenStack Platform 10 (Newton)python-requestsFix deferred
Red Hat OpenStack Platform 12 (Pike)python-requestsAffected
Red Hat OpenStack Platform 13 (Queens)python-requestsFix deferred
Red Hat OpenStack Platform 14 (Rocky)python-requestsAffected
Red Hat OpenStack Platform 8 (Liberty)python-requestsFix deferred
Red Hat OpenStack Platform 9 (Mitaka)python-requestsFix deferred

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-522
https://bugzilla.redhat.com/show_bug.cgi?id=1643829python-requests: Redirect from HTTPS to HTTP does not remove Authorization header

EPSS

Процентиль: 45%
0.00219
Низкий

2.6 Low

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 6 лет назад

The Requests package before 2.20.0 for Python sends an HTTP Authorization header to an http URI upon receiving a same-hostname https-to-http redirect, which makes it easier for remote attackers to discover credentials by sniffing the network.

CVSS3: 7.5
nvd
больше 6 лет назад

The Requests package before 2.20.0 for Python sends an HTTP Authorization header to an http URI upon receiving a same-hostname https-to-http redirect, which makes it easier for remote attackers to discover credentials by sniffing the network.

CVSS3: 7.5
debian
больше 6 лет назад

The Requests package before 2.20.0 for Python sends an HTTP Authorizat ...

suse-cvrf
почти 6 лет назад

Security update for python-requests

suse-cvrf
около 3 лет назад

Security update for python-requests

EPSS

Процентиль: 45%
0.00219
Низкий

2.6 Low

CVSS3