Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2020-35863

Опубликовано: 31 дек. 2020
Источник: ubuntu
Приоритет: medium
CVSS2: 7.5
CVSS3: 9.8

Описание

An issue was discovered in the hyper crate before 0.12.34 for Rust. HTTP request smuggling can occur. Remote code execution can occur in certain situations with an HTTP server on the loopback interface.

РелизСтатусПримечание
bionic

DNE

devel

DNE

esm-apps/focal

not-affected

0.12.35-1
esm-infra-legacy/trusty

DNE

focal

not-affected

0.12.35-1
groovy

DNE

precise/esm

DNE

trusty

ignored

end of standard support
trusty/esm

DNE

upstream

released

0.12.35-1

Показывать по

7.5 High

CVSS2

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.8
nvd
около 5 лет назад

An issue was discovered in the hyper crate before 0.12.34 for Rust. HTTP request smuggling can occur. Remote code execution can occur in certain situations with an HTTP server on the loopback interface.

CVSS3: 9.8
debian
около 5 лет назад

An issue was discovered in the hyper crate before 0.12.34 for Rust. HT ...

CVSS3: 9.8
github
больше 4 лет назад

HTTP Request Smuggling in hyper

7.5 High

CVSS2

9.8 Critical

CVSS3