CVE-2019-17567

Apache HTTP Server versions 2.4.6 to 2.4.46 mod_proxy_wstunnel configured on an URL that is not necessarily Upgraded by the origin server was tunneling the whole connection regardless, thus allowing for subsequent requests on the same connection to pass through with no HTTP validation, authentication or authorization possibly configured.
HTTP Request/Response Smuggling
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 99%
Affected Products (NVD)
VendorProductVersion
apachehttp_server
2.4.6 ≤
𝑥
≤ 2.4.46
oracleenterprise_manager_ops_center
12.4.0.0
oracleinstantis_enterprisetrack
17.1
oracleinstantis_enterprisetrack
17.2
oracleinstantis_enterprisetrack
17.3
oraclezfs_storage_appliance_kit
8.8
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
apache2
bookworm
2.4.62-1~deb12u1
fixed
bookworm (security)
2.4.62-1~deb12u2
fixed
bullseye
2.4.62-1~deb11u1
fixed
bullseye (security)
2.4.62-1~deb11u2
fixed
sid
2.4.62-3
fixed
stretch
ignored
trixie
2.4.62-3
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
apache2
bionic
deferred
focal
deferred
groovy
ignored
hirsute
ignored
impish
not-affected
jammy
not-affected
kinetic
not-affected
lunar
not-affected
mantic
not-affected
noble
not-affected
trusty
deferred
xenial
deferred
Amazon Linux logo
Amazon Linux Releases
Amazon Package
Release
httpd
Amazon Linux 2
0:2.4.48-2.amzn2
fixed
httpd-debuginfo
Amazon Linux 2
0:2.4.48-2.amzn2
fixed
httpd-devel
Amazon Linux 2
0:2.4.48-2.amzn2
fixed
httpd-filesystem
Amazon Linux 2
0:2.4.48-2.amzn2
fixed
httpd-manual
Amazon Linux 2
0:2.4.48-2.amzn2
fixed
httpd-tools
Amazon Linux 2
0:2.4.48-2.amzn2
fixed
httpd24
Amazon Linux 1
0:2.4.48-1.92.amzn1
fixed
httpd24-debuginfo
Amazon Linux 1
0:2.4.48-1.92.amzn1
fixed
httpd24-devel
Amazon Linux 1
0:2.4.48-1.92.amzn1
fixed
httpd24-manual
Amazon Linux 1
0:2.4.48-1.92.amzn1
fixed
httpd24-tools
Amazon Linux 1
0:2.4.48-1.92.amzn1
fixed
mod24_ldap
Amazon Linux 1
0:2.4.48-1.92.amzn1
fixed
mod24_md
Amazon Linux 1
0:2.4.48-1.92.amzn1
fixed
mod24_proxy_html
Amazon Linux 1
1:2.4.48-1.92.amzn1
fixed
mod24_session
Amazon Linux 1
0:2.4.48-1.92.amzn1
fixed
mod24_ssl
Amazon Linux 1
1:2.4.48-1.92.amzn1
fixed
mod_ldap
Amazon Linux 2
0:2.4.48-2.amzn2
fixed
mod_md
Amazon Linux 2
0:2.4.48-2.amzn2
fixed
mod_proxy_html
Amazon Linux 2
1:2.4.48-2.amzn2
fixed
mod_session
Amazon Linux 2
0:2.4.48-2.amzn2
fixed
mod_ssl
Amazon Linux 2
1:2.4.48-2.amzn2
fixed
Azure Linux logo
Azure Linux Releases
Azure Package
Release
httpd
CBL-Mariner 1.0
0:2.4.49-1.cm1
fixed
CBL-Mariner 2.0
0:2.4.52-1.cm2
fixed
References