CVE-2021-40540 - log back

CVE-2021-40540 edited at 09 Sep 2021 12:43:07
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Remote
Type
- Unknown
+ Insufficient validation
Description
+ ulfius_uri_logger in Ulfius HTTP Framework before 2.7.4 omits con_info initialization and a con_info->request NULL check for certain malformed HTTP requests.
References
+ https://github.com/babelouest/ulfius/commit/c83f564c184a27145e07c274b305cabe943bbfaa
Notes
CVE-2021-40540 created at 09 Sep 2021 12:42:06