Cloud Foundry Routing Release 0.203.0

CPE Details

Cloud Foundry Routing Release 0.203.0
0.203.0
2020-09-23
15h11 +00:00
2020-09-23
15h11 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:cloudfoundry:routing-release:0.203.0:*:*:*:*:*:*:*

Informations

Vendor

cloudfoundry

Product

routing-release

Version

0.203.0

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2023-34041 2023-09-08 07h22 +00:00 Cloud foundry routing release versions prior to 0.278.0 are vulnerable to abuse of HTTP Hop-by-Hop Headers. An unauthenticated attacker can use this vulnerability for headers like B3 or X-B3-SpanID to affect the identification value recorded in the logs in foundations.
5.3
Moyen
CVE-2020-5416 2020-08-21 21h50 +00:00 Cloud Foundry Routing (Gorouter), versions prior to 0.204.0, when used in a deployment with NGINX reverse proxies in front of the Gorouters, is potentially vulnerable to denial-of-service attacks in which an unauthenticated malicious attacker can send specially-crafted HTTP requests that may cause the Gorouters to be dropped from the NGINX backend pool.
6.5
Moyen