CVE-2020-13956 - log back

CVE-2020-13956 edited at 26 Apr 2021 21:56:09
References
+ https://www.openwall.com/lists/oss-security/2020/10/08/4
CVE-2020-13956 edited at 26 Apr 2021 21:54:48
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Remote
Type
- Unknown
+ Insufficient validation
Description
+ Apache HttpClient versions prior to version 4.5.13 and 5.0.3 can misinterpret malformed authority component in request URIs passed to the library as java.net.URI object and pick the wrong target host for request execution.
CVE-2020-13956 created at 26 Apr 2021 21:53:21
Severity
+ Unknown
Remote
+ Unknown
Type
+ Unknown
Description
References
Notes