Back to search
CVE-2019-20444
Published: Jan 29, 2020
Modified: Jul 1, 2025
PUBLISHED
Description
HttpObjectDecoder.java in Netty before 4.1.44 allows an HTTP header that lacks a colon, which might be interpreted as a separate header with an incorrect syntax, or might be interpreted as an "invalid fold."
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
RHSA-2020:0497
vendor-advisory
RHSA-2020:0601
vendor-advisory
RHSA-2020:0606
vendor-advisory
RHSA-2020:0605
vendor-advisory
RHSA-2020:0567
vendor-advisory
RHSA-2020:0806
vendor-advisory
RHSA-2020:0811
vendor-advisory
RHSA-2020:0804
vendor-advisory
RHSA-2020:0805
vendor-advisory
USN-4532-1
vendor-advisory
FEDORA-2020-66b5f85ccc
vendor-advisory
DSA-4885
vendor-advisory
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now