HTTP Response Smuggling vulnerability in Apache HTTP Server via mod_proxy_uwsgi. This issue affects Apache HTTP Server: from 2.4.30 through 2.4.55. Special characters in the origin response header can truncate/split the response forwarded to the client. References: https://httpd.apache.org/security/vulnerabilities_24.html https://www.openwall.com/lists/oss-security/2023/03/07/2
Created httpd tracking bugs for this issue: Affects: fedora-all [bug 2176720]
Is there a timeline for when this will be patched in RHEL9?
We will probably fix it in the next RHEL-9 release.(In reply to ryan.brothers from comment #4) > Is there a timeline for when this will be patched in RHEL9? We will probably fix it in the next RHEL-9 release.
Hy, for RHEL-8 there a RHSA to address the CVE-2023-27522 ? thks
This issue has been addressed in the following products: Red Hat JBoss Core Services Via RHSA-2023:4628 https://access.redhat.com/errata/RHSA-2023:4628
This issue has been addressed in the following products: JBoss Core Services on RHEL 7 JBoss Core Services for RHEL 8 Via RHSA-2023:4629 https://access.redhat.com/errata/RHSA-2023:4629
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2023-27522
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Extended Update Support Via RHSA-2023:5049 https://access.redhat.com/errata/RHSA-2023:5049
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2023:5050 https://access.redhat.com/errata/RHSA-2023:5050
This error also appears on this site: https://connectionsgame.io
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2023:6403 https://access.redhat.com/errata/RHSA-2023:6403
same here :< https://cookie-clicker2.com
The following items have fixed this problem: Upgrade Support for Red Hat Enterprise Linux 8.6 with Enhanced Features In accordance with RHSA-2023:5049, see https://access.redhat.com/errata/RHSA-2023:5049 https://geometrygame.io/
(In reply to errata-xmlrpc from comment #18) > This issue has been addressed in the following products: > > Red Hat Enterprise Linux 9 > > Via RHSA-2023:6403 https://slopeplay.io https://access.redhat.com/errata/RHSA-2023:6403 simple pleasures.
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Extended Update Support Via RHSA-2024:4504 https://access.redhat.com/errata/RHSA-2024:4504
(In reply to Stefanie Norton from comment #17) > This error also appears on this site: > https://2048cupcakes.co.uk/ also appears on this site: https://muenzewerfen.de/
Nice knowledge gaining article. This post is really the best on this valuable topic. [online block blast](https://blockblast.net/)
Great job here on _______ I read a lot of blog posts, but I never heard a topic like this. I Love this topic you made about the blogger's bucket list. Very resourceful. [online popcorn game](https://popcorngame.net/)