CVE-2023-0833
27.09.2023, 15:16
A flaw was found in Red Hat's AMQ-Streams, which ships a version of the OKHttp component with an information disclosure flaw via an exception triggered by a header containing an illegal value. This issue could allow an authenticated attacker to access information outside of their regular permissions.Enginsight
| Vendor | Product | Version |
|---|---|---|
| squareup | okhttp | 𝑥 < 4.9.2 |
| redhat | a-mq_streams | 𝑥 < 2.2.1 |
| redhat | a-mq_streams | 2.3.0 ≤ 𝑥 < 2.4.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References