Описание
Apache HTTP Server 2.4.52 and earlier fails to close inbound connection when errors are encountered discarding the request body, exposing the server to HTTP Request Smuggling
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 2.4.29-1ubuntu4.22 |
| devel | released | 2.4.52-1ubuntu2 |
| esm-infra-legacy/trusty | released | 2.4.7-1ubuntu4.22+esm4 |
| esm-infra/bionic | released | 2.4.29-1ubuntu4.22 |
| esm-infra/focal | released | 2.4.41-4ubuntu3.10 |
| esm-infra/xenial | released | 2.4.18-2ubuntu3.17+esm5 |
| focal | released | 2.4.41-4ubuntu3.10 |
| impish | released | 2.4.48-3.1ubuntu3.3 |
| jammy | released | 2.4.52-1ubuntu2 |
| trusty | ignored | end of standard support |
Показывать по
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3
Связанные уязвимости
Apache HTTP Server 2.4.52 and earlier fails to close inbound connection when errors are encountered discarding the request body, exposing the server to HTTP Request Smuggling
Apache HTTP Server 2.4.52 and earlier fails to close inbound connection when errors are encountered discarding the request body, exposing the server to HTTP Request Smuggling
HTTP request smuggling vulnerability in Apache HTTP Server 2.4.52 and earlier
Apache HTTP Server 2.4.52 and earlier fails to close inbound connectio ...
EPSS
7.5 High
CVSS2
9.8 Critical
CVSS3