HTTP Response Smuggling vulnerability in Apache HTTP Server via modproxyuwsgi. This issue affects Apache HTTP Server: from 2.4.30 through 2.4.55. Special characters in the origin response header can truncate/split the response forwarded to the client.
{
"binaries": [
{
"binary_version": "2.4.41-4ubuntu3.14",
"binary_name": "apache2"
},
{
"binary_version": "2.4.41-4ubuntu3.14",
"binary_name": "apache2-bin"
},
{
"binary_version": "2.4.41-4ubuntu3.14",
"binary_name": "apache2-data"
},
{
"binary_version": "2.4.41-4ubuntu3.14",
"binary_name": "apache2-dev"
},
{
"binary_version": "2.4.41-4ubuntu3.14",
"binary_name": "apache2-ssl-dev"
},
{
"binary_version": "2.4.41-4ubuntu3.14",
"binary_name": "apache2-suexec-custom"
},
{
"binary_version": "2.4.41-4ubuntu3.14",
"binary_name": "apache2-suexec-pristine"
},
{
"binary_version": "2.4.41-4ubuntu3.14",
"binary_name": "apache2-utils"
},
{
"binary_version": "2.4.41-4ubuntu3.14",
"binary_name": "libapache2-mod-md"
},
{
"binary_version": "2.4.41-4ubuntu3.14",
"binary_name": "libapache2-mod-proxy-uwsgi"
}
],
"availability": "No subscription required"
}
{
"binaries": [
{
"binary_version": "2.4.52-1ubuntu4.4",
"binary_name": "apache2"
},
{
"binary_version": "2.4.52-1ubuntu4.4",
"binary_name": "apache2-bin"
},
{
"binary_version": "2.4.52-1ubuntu4.4",
"binary_name": "apache2-data"
},
{
"binary_version": "2.4.52-1ubuntu4.4",
"binary_name": "apache2-dev"
},
{
"binary_version": "2.4.52-1ubuntu4.4",
"binary_name": "apache2-ssl-dev"
},
{
"binary_version": "2.4.52-1ubuntu4.4",
"binary_name": "apache2-suexec-custom"
},
{
"binary_version": "2.4.52-1ubuntu4.4",
"binary_name": "apache2-suexec-pristine"
},
{
"binary_version": "2.4.52-1ubuntu4.4",
"binary_name": "apache2-utils"
},
{
"binary_version": "2.4.52-1ubuntu4.4",
"binary_name": "libapache2-mod-md"
},
{
"binary_version": "2.4.52-1ubuntu4.4",
"binary_name": "libapache2-mod-proxy-uwsgi"
}
],
"availability": "No subscription required"
}