PT-2017-6491 · Apache+1 · Httpd+1
Felix Eckhofer
·
Published
2017-08-28
·
Updated
2017-09-07
·
CVE-2015-1445
CVSS v2.0
9.0
High
| Vector | AV:N/AC:L/Au:S/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
fli4l versions prior to 3.10.1
fli4l versions 4.0 before 2015-01-30
Description
The issue concerns HTTP header injection in the httpd package.
Recommendations
For fli4l versions prior to 3.10.1, update to version 3.10.1 or later.
For fli4l versions 4.0 before 2015-01-30, update to a version released after 2015-01-30.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Fli4L
Httpd