Lucene search

K
osvGoogleOSV:GO-2021-0159
HistoryJan 05, 2022 - 9:39 p.m.

Request smuggling due to improper header parsing in net/http

2022-01-0521:39:14
Google
osv.dev
7

9.2 High

AI Score

Confidence

High

0.018 Low

EPSS

Percentile

88.3%

HTTP headers were not properly parsed, which allows remote attackers to conduct HTTP request smuggling attacks via a request that contains Content-Length and Transfer-Encoding header fields.

CPENameOperatorVersion
stdliblt1.4.3

9.2 High

AI Score

Confidence

High

0.018 Low

EPSS

Percentile

88.3%