Описание
Improved Host header checks to reject requests not sent to a well-known local hostname or IP, or the server-specified hostname.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Advanced Cluster Management for Kubernetes 2 | geckodriver | Not affected |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=2053141geckodriver: DNS rebinding vulnerability
7.5 High
CVSS3
Связанные уязвимости
CVSS3: 5.3
nvd
почти 4 года назад
Improved Host header checks to reject requests not sent to a well-known local hostname or IP, or the server-specified hostname.
CVSS3: 5.3
debian
почти 4 года назад
Improved Host header checks to reject requests not sent to a well-know ...
CVSS3: 5.3
github
почти 4 года назад
Improved Host header checks to reject requests not sent to a well-known local hostname or IP, or the server-specified hostname.
7.5 High
CVSS3