HttpObjectDecoder.java in Netty before 4.1.44 allows an HTTP header that lacks a colon, which might be interpreted as a separate header with an incorrect syntax, or might be interpreted as an "invalid fold."
Metrics
Affected Vendors & Products
References
History
Mon, 26 Aug 2024 18:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Redhat jboss Enterprise Application Platform Eus
|
|
CPEs | cpe:/a:redhat:jboss_enterprise_application_platform_eus:7.1::el7 | |
Vendors & Products |
Redhat jboss Enterprise Application Platform Eus
|
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2020-01-29T20:33:17
Updated: 2024-08-05T02:39:10.018Z
Reserved: 2020-01-29T00:00:00
Link: CVE-2019-20444
Vulnrichment
No data.
NVD
Status : Modified
Published: 2020-01-29T21:15:11.047
Modified: 2023-11-07T03:09:09.210
Link: CVE-2019-20444
Redhat