PT-2021-17200 · Hyper · Hyper

Published

2021-02-10

·

Updated

2021-02-12

·

CVE-2021-26959

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions: hyper versions prior to 0.13.10 hyper versions 0.14.x prior to 0.14.3
Description: An issue was discovered in the hyper crate where request smuggling can occur when more than one Transfer-Encoding header is sent.
Recommendations: For hyper versions prior to 0.13.10, update to version 0.13.10 or later. For hyper versions 0.14.x prior to 0.14.3, update to version 0.14.3 or later.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2021-26959

Affected Products

Hyper