Synopsis:          Important: http-parser security update
Advisory ID:       SLSA-2020:0703-1
Issue Date:        2020-03-04
CVE Numbers:       CVE-2019-15605
--

Security Fix(es):

* nodejs: HTTP request smuggling using malformed Transfer-Encoding header
(CVE-2019-15605)
--

SL7
  x86_64
    http-parser-2.7.1-8.el7_7.2.i686.rpm
    http-parser-2.7.1-8.el7_7.2.x86_64.rpm
    http-parser-debuginfo-2.7.1-8.el7_7.2.i686.rpm
    http-parser-debuginfo-2.7.1-8.el7_7.2.x86_64.rpm
    http-parser-devel-2.7.1-8.el7_7.2.i686.rpm
    http-parser-devel-2.7.1-8.el7_7.2.x86_64.rpm

- Scientific Linux Development Team

SciLinux: SLSA-2020-0703-1 Important: http-parser on SL7.x x86_64

nodejs: HTTP request smuggling using malformed Transfer-Encoding header (CVE-2019-15605) SL7 x86_64 http-parser-2.7.1-8.el7_7.2.i686.rpm http-parser-2.7.1-8.el7_7.2.x86_64.rpm http...

Summary

Important: http-parser security update



Security Fixes

* nodejs: HTTP request smuggling using malformed Transfer-Encoding header (CVE-2019-15605)
SL7 x86_64 http-parser-2.7.1-8.el7_7.2.i686.rpm http-parser-2.7.1-8.el7_7.2.x86_64.rpm http-parser-debuginfo-2.7.1-8.el7_7.2.i686.rpm http-parser-debuginfo-2.7.1-8.el7_7.2.x86_64.rpm http-parser-devel-2.7.1-8.el7_7.2.i686.rpm http-parser-devel-2.7.1-8.el7_7.2.x86_64.rpm
- Scientific Linux Development Team

Severity
Advisory ID: SLSA-2020:0703-1
Issued Date: : 2020-03-04
CVE Numbers: CVE-2019-15605

Related News