VDB
ALINUX2-SA-2020%3A0026
ALINUX2-SA-2020%3A0026
PUBLISHED
CVSS 7.099999904632568 HIGH
Package updates are available for Alibaba Cloud Linux 2.1903 that fix the following vulnerabilities: CVE-2019-15605: HTTP request smuggling in Node.js 10, 12, and 13 causes malicious payload delivery when transfer-encoding is malformed
Risk Scores
CVSS 3.1
7.099999904632568
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:L
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Alibaba Cloud | http-parser |
Timeline
- Mar 5, 2020 CVE Published
- Mar 5, 2020 CVE Updated