Back to bug 2161773

Who When What Removed Added
Guilherme de Almeida Suckevicz 2023-01-18 17:49:41 UTC Summary CVE-2022-37436 apache httpd: mod_proxy backend HTTP response splitting CVE-2022-37436 httpd: mod_proxy: HTTP response splitting
Guilherme de Almeida Suckevicz 2023-01-18 17:57:37 UTC Fixed In Version Apache HTTP Server 2.4.55 httpd 2.4.55
Guilherme de Almeida Suckevicz 2023-01-18 18:52:14 UTC CC asoldano, bbaranow, bmaxwell, brian.stansberry, cdewolf, chazlett, csutherl, darran.lofthouse, dkreling, dosoudil, fjuma, hhorak, ivassile, iweiss, jclere, jorton, jwon, lgao, luhliari, mosmerov, msochure, msvehla, mturk, nwallace, peholase, pjindal, plodge, pmackay, rstancel, smaestri, szappis, tom.jenkinson
Guilherme de Almeida Suckevicz 2023-01-18 18:55:05 UTC Depends On 2162094
Guilherme de Almeida Suckevicz 2023-01-18 19:06:11 UTC Comment 0 updated
Guilherme de Almeida Suckevicz 2023-01-18 19:40:06 UTC CC jburrell
Guilherme de Almeida Suckevicz 2023-01-19 17:31:12 UTC Depends On 2162486, 2162485, 2162487
Guilherme de Almeida Suckevicz 2023-01-19 20:13:50 UTC Doc Text A flaw was found in the mod_proxy module of httpd. A malicious backend can cause the response headers to be truncated because they are not cleaned when an error is found while reading them, resulting in some headers being incorporated into the response body and not being interpreted by a client.
RHEL Program Management Team 2023-01-31 15:49:46 UTC CC icesalov
Flags needinfo?(zmiele)
Depends On 2165973
RHEL Program Management Team 2023-01-31 15:52:08 UTC Depends On 2165977
Luboš Uhliarik 2023-01-31 16:12:38 UTC Flags needinfo?(zmiele)
Guilherme de Almeida Suckevicz 2023-01-31 17:33:04 UTC CC bdettelb, caswilli, jkoehler, kaycoth, micjohns, sthirugn
Luboš Uhliarik 2023-02-01 16:50:16 UTC Flags needinfo?(icesalov)
errata-xmlrpc 2023-02-21 09:32:06 UTC Flags needinfo?(icesalov)
Link ID Red Hat Product Errata RHSA-2023:0852
errata-xmlrpc 2023-02-28 08:20:53 UTC Link ID Red Hat Product Errata RHSA-2023:0970
Product Security DevOps Team 2023-02-28 12:18:12 UTC Resolution --- ERRATA
Status NEW CLOSED
Last Closed 2023-02-28 12:18:12 UTC
errata-xmlrpc 2023-08-15 17:37:15 UTC Link ID Red Hat Product Errata RHSA-2023:4628
errata-xmlrpc 2023-08-15 17:40:48 UTC Link ID Red Hat Product Errata RHSA-2023:4629

Back to bug 2161773