Intelligence View
CVE-2023-38697 | protocol-http1 Gem prior 0.15.1 on Ruby request smuggling (Nessus ID 251221)
A vulnerability described as problematic has been identified in protocol-http1 Gem on Ruby. Affected by this issue is some unknown functionality. The manipulation results in http request smuggling. This vulnerability is cataloged as…
This vulnerability is cataloged as CVE-2023-38697. The attack may be launched remotely. There is no exploit available.
Upgrading the affected component is recommended.
2. Cyber Threat Intelligence & Forensik
3. Compliance, SLA & Vendor Adherence
Hersteller-Sicherheitsmeldungen & Patch-Status
Hersteller-Advisory noch nicht formal hinterlegt. Regelmäßiges Re-Scanning der CTI-Quellen anberaumt.
-
Upstream-Referenz (Code-Hosting, kein Advisory)github.com
-
Upstream-Referenz (Code-Hosting, kein Advisory)github.com
-
Upstream-Referenz (Code-Hosting, kein Advisory)github.com
-
Web Referencewww.rfc-editor.org