Описание
An issue was discovered in the hyper crate before 0.12.34 for Rust. HTTP request smuggling can occur. Remote code execution can occur in certain situations with an HTTP server on the loopback interface.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | DNE | |
| devel | DNE | |
| esm-apps/focal | not-affected | 0.12.35-1 |
| esm-infra-legacy/trusty | DNE | |
| focal | not-affected | 0.12.35-1 |
| groovy | DNE | |
| precise/esm | DNE | |
| trusty | ignored | end of standard support |
| trusty/esm | DNE | |
| upstream | released | 0.12.35-1 |
Показывать по
10
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
CVSS3: 9.8
nvd
около 5 лет назад
An issue was discovered in the hyper crate before 0.12.34 for Rust. HTTP request smuggling can occur. Remote code execution can occur in certain situations with an HTTP server on the loopback interface.
CVSS3: 9.8
debian
около 5 лет назад
An issue was discovered in the hyper crate before 0.12.34 for Rust. HT ...
7.5 High
CVSS2
9.8 Critical
CVSS3