CVE-2016-10711

Apsis Pound before 2.8a allows request smuggling via crafted headers, a different vulnerability than CVE-2005-3751.
Configurations

Configuration 1 (hide)

cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:apsis:pound:*:*:*:*:*:*:*:*

History

21 Nov 2024, 02:44

Type Values Removed Values Added
References () http://www.apsis.ch/pound/pound_list/archive/2016/2016-10/1477235279000 - Release Notes, Vendor Advisory () http://www.apsis.ch/pound/pound_list/archive/2016/2016-10/1477235279000 - Release Notes, Vendor Advisory
References () https://lists.debian.org/debian-lts-announce/2018/02/msg00015.html - Third Party Advisory () https://lists.debian.org/debian-lts-announce/2018/02/msg00015.html - Third Party Advisory
References () https://lists.debian.org/debian-lts-announce/2020/04/msg00028.html - () https://lists.debian.org/debian-lts-announce/2020/04/msg00028.html -
References () https://lists.debian.org/debian-lts-announce/2020/05/msg00003.html - () https://lists.debian.org/debian-lts-announce/2020/05/msg00003.html -

Information

Published : 2018-01-29 20:29

Updated : 2024-11-21 02:44


NVD link : CVE-2016-10711

Mitre link : CVE-2016-10711

CVE.ORG link : CVE-2016-10711


JSON object : View

Products Affected

apsis

  • pound

debian

  • debian_linux
CWE
CWE-444

Inconsistent Interpretation of HTTP Requests ('HTTP Request/Response Smuggling')