Bug 2065792
Summary: | CVE-2022-24761 python-waitress: waitress: Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') [openstack-rdo] | ||
---|---|---|---|
Product: | [Community] RDO | Reporter: | Sage McTaggart <amctagga> |
Component: | distribution | Assignee: | Alfredo Moralejo <amoralej> |
Status: | CLOSED UPSTREAM | QA Contact: | Shai Revivo <srevivo> |
Severity: | high | Docs Contact: | |
Priority: | high | ||
Version: | unspecified | CC: | eglynn, jjoyce, jpena, lhh, markmc, mburns, spower, srevivo, ykarel |
Target Milestone: | --- | Keywords: | Security, SecurityTracking |
Target Release: | trunk | ||
Hardware: | Unspecified | ||
OS: | Unspecified | ||
Whiteboard: | component:python-waitress | ||
Fixed In Version: | Doc Type: | No Doc Update | |
Doc Text: | Story Points: | --- | |
Clone Of: | Environment: | ||
Last Closed: | 2025-02-10 04:01:09 UTC | Type: | --- |
Regression: | --- | Mount Type: | --- |
Documentation: | --- | CRM: | |
Verified Versions: | Category: | --- | |
oVirt Team: | --- | RHEL 7.3 requirements from Atomic Host: | |
Cloudforms Team: | --- | Target Upstream Version: | |
Embargoed: | |||
Bug Depends On: | |||
Bug Blocks: | 2065086 |
Description
Sage McTaggart
2022-03-18 18:02:56 UTC
upper-constraints in openstack is still in 2.0.0 while the security issue has been fixed in 2.1.1 and libraries versions are frozen right now. I'll keep this on hold. This product has been discontinued or is no longer tracked in Red Hat Bugzilla. |