296,733
Total vulnerabilities in the database
HttpObjectDecoder.java in Netty before 4.1.44 allows a Content-Length header to be accompanied by a second Content-Length header, or by a Transfer-Encoding header.
| Software | From | Fixed in |
|---|---|---|
| netty / netty | - | 4.1.44 |
| debian / debian_linux | 8.0 | 8.0.x |
| debian / debian_linux | 9.0 | 9.0.x |
| debian / debian_linux | 10.0 | 10.0.x |
| fedoraproject / fedora | 33 | 33.x |
| canonical / ubuntu_linux | 18.04 | 18.04.x |
| redhat / jboss_amq_clients | 2 | 2.x |
| redhat / jboss_enterprise_application_platform | 7.2 | 7.2.x |
| redhat / jboss_enterprise_application_platform | 7.3 | 7.3.x |
| apache / spark | 2.4.7 | 2.4.7.x |
| apache / spark | 2.4.8 | 2.4.8.x |
io.netty / netty-handler
|
- | 4.1.45 |