CVE-2020-11984
07.08.2020, 16:15
Apache HTTP server 2.4.32 to 2.4.44 mod_proxy_uwsgi info disclosure and possible RCE
| Vendor | Product | Version |
|---|---|---|
| apache | http_server | 2.4.32 ≤ 𝑥 ≤ 2.4.43 |
| netapp | clustered_data_ontap | - |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 18.04 |
| canonical | ubuntu_linux | 20.04 |
| debian | debian_linux | 9.0 |
| debian | debian_linux | 10.0 |
| opensuse | leap | 15.1 |
| opensuse | leap | 15.2 |
| oracle | communications_element_manager | 8.2.0 ≤ 𝑥 ≤ 8.2.2 |
| oracle | communications_session_report_manager | 8.2.0 ≤ 𝑥 ≤ 8.2.2 |
| oracle | communications_session_route_manager | 8.2.0 ≤ 𝑥 ≤ 8.2.2 |
| oracle | enterprise_manager_ops_center | 12.4.0.0 |
| oracle | hyperion_infrastructure_technology | 11.1.2.4 |
| oracle | instantis_enterprisetrack | 17.1 |
| oracle | instantis_enterprisetrack | 17.2 |
| oracle | instantis_enterprisetrack | 17.3 |
| oracle | zfs_storage_appliance_kit | 8.8 |
𝑥
= Vulnerable software versions
Debian Releases
Debian Product | |||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| apache2 |
| ||||||||||||||
| uwsgi |
|
Ubuntu Releases
Ubuntu Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| apache2 |
| ||||||||||||||||
| uwsgi |
|
References