Apsis Pound before 2.8a allows request smuggling via crafted headers, a different vulnerability than CVE-2005-3751.
References
Configurations
History
21 Nov 2024, 02:44
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.apsis.ch/pound/pound_list/archive/2016/2016-10/1477235279000 - Release Notes, Vendor Advisory | |
References | () https://lists.debian.org/debian-lts-announce/2018/02/msg00015.html - Third Party Advisory | |
References | () https://lists.debian.org/debian-lts-announce/2020/04/msg00028.html - | |
References | () https://lists.debian.org/debian-lts-announce/2020/05/msg00003.html - |
Information
Published : 2018-01-29 20:29
Updated : 2024-11-21 02:44
NVD link : CVE-2016-10711
Mitre link : CVE-2016-10711
CVE.ORG link : CVE-2016-10711
JSON object : View
Products Affected
apsis
- pound
debian
- debian_linux
CWE
CWE-444
Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')