cbcvebase.
CVE-2020-1935
published 2020-02-24

CVE-2020-1935: In Apache Tomcat 9.0.0.M1 to 9.0.30, 8.5.0 to 8.5.50 and 7.0.0 to 7.0.99 the HTTP header parsing code used an approach to end-of-line parsing that allowed some…

medium4.8CVSS 3.1
AVNACHPRNUINSUCLILAN
In Apache Tomcat 9.0.0.M1 to 9.0.30, 8.5.0 to 8.5.50 and 7.0.0 to 7.0.99 the HTTP header parsing code used an approach to end-of-line parsing that allowed some invalid HTTP headers to be parsed as valid. This led to a possibility of HTTP Request Smuggling if Tomcat was located behind a reverse proxy that incorrectly handled the invalid Transfer-Encoding header in a particular manner. Such a reverse proxy is considered unlikely.

Affected

37 ranges· showing 25
VendorProductVersion rangeFixed in
apacheapache_tomcat
apacheapache_tomcat
apacheapache_tomcat
apachetomcat
apachetomcat
apachetomcat7.0.0 – 7.0.99
apachetomcat8.5.0 – 8.5.50
apachetomcat9.0.0 – 9.0.30
canonicalubuntu_linux
debiandebian_linux
debiandebian_linux
debiandebian_linux
debiantomcat9< tomcat9 9.0.31-1 (bookworm)tomcat9 9.0.31-1 (bookworm)
netapponcommand_system_manager3.0.0 – 3.1.3
opensuseleap
oracleagile_engineering_data_management
oracleagile_product_lifecycle_management
oracleagile_product_lifecycle_management
oracleagile_product_lifecycle_management
oraclecommunications_element_manager
oraclecommunications_element_manager
oraclecommunications_element_manager
oraclecommunications_instant_messaging_server
oraclehealth_sciences_empirica_inspections
oraclehealth_sciences_empirica_signal

CVSS provenance

nvdv3.14.8MEDIUMCVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:L/A:N
osv7.5HIGH