Описание
It was discovered that Undertow before 1.4.17, 1.3.31 and 2.0.0 processes http request headers with unusual whitespaces which can cause possible http request smuggling.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | ignored | end of life |
| bionic | ignored | end of standard support, was needed |
| cosmic | ignored | end of life |
| devel | needs-triage | |
| disco | ignored | end of life |
| eoan | released | 2.0.23-1 |
| esm-apps-legacy/xenial | needed | |
| esm-apps/bionic | needed | |
| esm-apps/focal | released | 2.0.23-1 |
| esm-apps/jammy | released | 2.0.23-1 |
Показывать по
10
5 Medium
CVSS2
2.6 Low
CVSS3
Связанные уязвимости
CVSS3: 2.6
redhat
больше 8 лет назад
It was discovered that Undertow before 1.4.17, 1.3.31 and 2.0.0 processes http request headers with unusual whitespaces which can cause possible http request smuggling.
CVSS3: 2.6
nvd
около 8 лет назад
It was discovered that Undertow before 1.4.17, 1.3.31 and 2.0.0 processes http request headers with unusual whitespaces which can cause possible http request smuggling.
CVSS3: 2.6
debian
около 8 лет назад
It was discovered that Undertow before 1.4.17, 1.3.31 and 2.0.0 proces ...
5 Medium
CVSS2
2.6 Low
CVSS3