CVE Database
/

CVE-2019-20444

Back to search

CVE-2019-20444

Published: Jan 29, 2020

Modified: Jul 1, 2025

PUBLISHED

Description

HttpObjectDecoder.java in Netty before 4.1.44 allows an HTTP header that lacks a colon, which might be interpreted as a separate header with an incorrect syntax, or might be interpreted as an "invalid fold."

VendorProductVersions

n/a

n/a

affected
n/a

References

RHSA-2020:0497
vendor-advisory
RHSA-2020:0601
vendor-advisory
RHSA-2020:0606
vendor-advisory
RHSA-2020:0605
vendor-advisory
RHSA-2020:0567
vendor-advisory
RHSA-2020:0806
vendor-advisory
RHSA-2020:0811
vendor-advisory
RHSA-2020:0804
vendor-advisory
RHSA-2020:0805
vendor-advisory
USN-4532-1
vendor-advisory
FEDORA-2020-66b5f85ccc
vendor-advisory
DSA-4885
vendor-advisory

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now