REDHAT-BUG-2323117: SSRF

Published Nov 1, 2024
·
Updated

Versions of the package sinatra from 0.0.0 are vulnerable to Reliance on Untrusted Inputs in a Security Decision via the X-Forwarded-Host (XFH) header. When making a request to a method with redirect applied, it is possible to trigger an Open Redirect Attack by inserting an arbitrary address into this header. If used for caching purposes, such as with servers like Nginx, or as a reverse proxy, without handling the X-Forwarded-Host header, attackers can potentially exploit Cache Poisoning or Routing-based SSRF.

Affected Software

1 affected component
Sinatra Sinatra>=0.0.0

Event History

Nov 1, 2024
Data Sourced
via Red Hat·06:01 AM
DescriptionSeverityAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of REDHAT-BUG-2323117?

The severity of REDHAT-BUG-2323117 is classified as critical due to the potential for Open Redirect Attacks.

2

How do I fix REDHAT-BUG-2323117?

To fix REDHAT-BUG-2323117, upgrade the Sinatra package to a version above 0.0.0 where the vulnerability is addressed.

3

What causes the vulnerability in REDHAT-BUG-2323117?

The vulnerability in REDHAT-BUG-2323117 arises from reliance on untrusted inputs in security decision-making related to the X-Forwarded-Host (XFH) header.

4

Which versions of Sinatra are affected by REDHAT-BUG-2323117?

All versions of the Sinatra package from 0.0.0 are affected by REDHAT-BUG-2323117.

5

Can REDHAT-BUG-2323117 be exploited remotely?

Yes, REDHAT-BUG-2323117 can be exploited remotely through crafted requests that manipulate the X-Forwarded-Host header.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203