HTTP Response Smuggling vulnerability in Apache HTTP Server via mod_proxy_uwsgi. This issue affects Apache HTTP Server: from 2.4.30 through 2.4.55.
Special characters in the origin response header can truncate/split the response forwarded to the client.
| Software | From | Fixed in |
|---|---|---|
| debian / debian_linux | 10.0 | 10.0.x |
| unbit / uwsgi | - | 2.0.22 |
uWSGI
|
- | 2.0.22 |
| apache / http_server | 2.4.30 | 2.4.56 |