First published: Tue Sep 24 2024(Updated: )
It was discovered that Puma incorrectly handled parsing certain headers. A remote attacker could possibly use this issue to overwrite header values set by intermediate proxies by providing duplicate headers containing underscore characters.
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/puma | <6.4.2-4ubuntu4.3 | 6.4.2-4ubuntu4.3 |
Ubuntu Ubuntu | =24.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.