VDB

BDU%3A2024-03553

BDU%3A2024-03553 PUBLISHED CVSS 7.800000190734863 HIGH

Уязвимость WSGI-сервера gunicorn, связанная с недостатками обработки HTTP-запросов, позволяющая нарушителю обойти существующие ограничения безопасности и выполнить атаку «контрабанда HTTP-запросов»

Risk Scores

CVSS 2.0
7.800000190734863

Affected Products

VendorProductVersions
Red Hat Inc., Novell Inc., Сообщество свободного программного обеспечения, ООО «Ред Софт», АО «ИВК», АО "НППКТ"Red Hat Enterprise Linux, OpenSUSE Leap, SUSE Linux Enterprise Server for SAP Applications, Debian GNU/Linux, Red Hat Storage, Red Hat Quay, Suse Linux Enterprise Server, РЕД ОС (запись в едином реестре российских программ №3751), Red Hat OpenShift Container Platform, Red Hat Satellite, Suse Linux Enterprise Desktop, Red Hat OpenStack Platform, Red Hat Update Infrastructure for Cloud Providers, Red Hat Discovery, Red Hat Ansible Automation Platform, АЛЬТ СП 10, gunicorn, ОСОН ОСнова Оnyx (запись в едином реестре российских программ №5913)

Timeline

  • May 7, 2024 CVE Published
  • Aug 26, 2025 CVE Updated
Open in Interactive Console →
$ Console Community · 100/wk Open console ›