← العودة للجدول
CVE-2015-5741
CVE-2015-5741 — The net/http library in net/http/transfer.go in Go before 1.4.3 does not properl
📅 2020-02-08
🔴 Critical 🔥 No NVD Exploit Vulnerability CVSS 9.8

📋 الوصف الكامل

The net/http library in net/http/transfer.go in Go before 1.4.3 does not properly parse HTTP headers, which allows remote attackers to conduct HTTP request smuggling attacks via a request that contains Content-Length and Transfer-Encoding header fields.

💻 الأنظمة المتأثرة

The net/http library

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2015-5741

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2015-5741 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←