CVE-2017-12165

2.6LOW

It was discovered that Undertow before 1.4.17, 1.3.31 and 2.0.0 processes http request headers with unusual whitespaces which can cause possible http request smuggling.

Published: 7/27/2018Updated: 11/21/2024

Description

It was discovered that Undertow before 1.4.17, 1.3.31 and 2.0.0 processes http request headers with unusual whitespaces which can cause possible http request smuggling.

AI AnalysisPowered by AI

Affected Products

redhatundertow
redhatundertow
redhatundertow
2.0.0
redhatjboss_enterprise_application_platform
7.0.0
redhatjboss_enterprise_application_platform
7.1.0

References