An issue was discovered in the hyper crate before 0.12.34 for Rust. HTTP request smuggling can occur. Remote code execution can occur in certain situations with an HTTP server on the loopback interface.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-1736 | An issue was discovered in the hyper crate before 0.12.34 for Rust. HTTP request smuggling can occur. Remote code execution can occur in certain situations with an HTTP server on the loopback interface. |
Github GHSA |
GHSA-h3qr-rq2j-74w4 | HTTP Request Smuggling in hyper |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://rustsec.org/advisories/RUSTSEC-2020-0008.html |
|
History
No history.
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T17:16:13.148Z
Reserved: 2020-12-31T00:00:00
Link: CVE-2020-35863
No data.
Status : Modified
Published: 2020-12-31T10:15:15.097
Modified: 2024-11-21T05:28:20.687
Link: CVE-2020-35863
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Github GHSA