Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-1705
HistoryAug 10, 2022 - 8:15 p.m.

Design/Logic Flaw

2022-08-1020:15:00
PRIOn knowledge base
www.prio-n.com
3

7.1 High

AI Score

Confidence

High

0.002 Low

EPSS

Percentile

54.6%

Acceptance of some invalid Transfer-Encoding headers in the HTTP/1 client in net/http before Go 1.17.12 and Go 1.18.4 allows HTTP request smuggling if combined with an intermediate server that also improperly fails to reject the header as invalid.

CPENameOperatorVersion
golt1.17.12
goge1.18.0
golt1.18.4