CVE-2020-1935
4.8
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N
Exploitability: 2.2 / Impact: 2.5
Source: NVD
Description
In Apache Tomcat 9.0.0.M1 to 9.0.30, 8.5.0 to 8.5.50 and 7.0.0 to 7.0.99 the HTTP header parsing code used an approach to end-of-line parsing that allowed some invalid HTTP headers to be parsed as valid. This led to a possibility of HTTP Request Smuggling if Tomcat was located behind a reverse proxy that incorrectly handled the invalid Transfer-Encoding header in a particular manner. Such a reverse proxy is considered unlikely.
Affected (60)
Show all products
Apache: Tomcat · Debian: Debian Linux · Canonical: Ubuntu Linux · Opensuse: Leap · Netapp: Data Availability Services, Oncommand System Manager · Oracle: Agile Engineering Data Management, Agile Product Lifecycle Management, Communications Element Manager, Communications Instant Messaging Server, Health Sciences Empirica Inspections, Health Sciences Empirica Signal, Hospitality Guest Access, Hyperion Infrastructure Technology, Instantis Enterprisetrack, Mysql Enterprise Monitor, Retail Order Broker, Siebel Ui Framework, Transportation Management, Workload Manager
Configuration B
| Vulnerable Software | Affected Versions |
|---|---|
| Version 10.0 |
Configuration C
| Vulnerable Software | Affected Versions |
|---|---|
| Version 16.04 |
Configuration E
| Vulnerable Software | Affected Versions |
|---|---|
| All versions | |
| From 3.0.0 to 3.1.3 |
Configuration F
| Vulnerable Software | Affected Versions |
|---|---|
| Version 6.2.1.0 | |
| Version 9.3.3 | |
| Version 8.1.1 | |
| Version 10.0.1.4.0 | |
| Version 1.0.1.2 | |
| Version 7.3.3 | |
| Version 4.2.0 | |
| Version 11.1.2.4 | |
| From 17.1 to 17.3 | |
| From 4.0.0 to 4.0.12 | |
| Version 15.0 | |
| Up to 20.5 | |
| Version 6.3.7 | |
| Version 12.2.0.1 |
References (38)
Source: security@apache.org
Broken LinkMailing ListThird Party Advisory
Source: security@apache.org
Mailing ListVendor Advisory
Source: security@apache.org
Source: security@apache.org
Source: security@apache.org
Source: security@apache.org
Source: security@apache.org
Source: security@apache.org
Source: security@apache.org
Source: security@apache.org
Source: security@apache.org
Mailing ListThird Party Advisory
Source: security@apache.org
Mailing ListThird Party Advisory
Source: security@apache.org
Third Party Advisory
Source: security@apache.org
Third Party Advisory
Source: security@apache.org
Third Party Advisory
Source: security@apache.org
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Broken LinkMailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Mailing ListThird Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party Advisory
Timeline
No history available yet.