[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248585

 
 

909

 
 

195621

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS-2015-578 --- httpd

ID: oval:org.secpod.oval:def:1200039Date: (C)2015-12-30   (M)2023-12-22
Class: PATCHFamily: unix




Multiple flaws were found in the way httpd parsed HTTP requests and responses using chunked transfer encoding. A remote attacker could use these flaws to create a specially crafted request, which httpd would decode differently from an HTTP proxy software in front of it, possibly leading to HTTP request smuggling attacks.

Platform:
Amazon Linux AMI
Product:
httpd
Reference:
ALAS-2015-578
CVE-2015-3183
CVE    1
CVE-2015-3183
CPE    2
cpe:/o:amazon:linux
cpe:/a:apache:http_server

© SecPod Technologies