CVE-2016-5387
high · 8.1The Apache HTTP Server through 2.4.23 follows RFC 3875 section 4.1.18 and therefore does not protect applications from the presence of untrusted client data in the HTTP_PROXY environment variable, which might allow remote attackers to redirect an application's outbound HTTP traffic to an arbitrary proxy server via a crafted Proxy header in an HTTP request, aka an "httpoxy" issue. NOTE: the vendor states "This mitigation has been assigned the identifier CVE-2016-5387"; in other words, this is not a CVE ID for a vulnerability.
8.1
CVSS
55.7%
EPSS (exploit prob.)
99th
EPSS percentile
2016-07-19
Published
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| apache | http_server | >= 2.2.0, <= 2.2.31 |
| apache | http_server | >= 2.4.1, <= 2.4.23 |
| hp | system_management_homepage | <= 7.5.5.0 |
| oracle | communications_user_data_repository | >= 10.0.0, <= 12.4 |
| oracle | enterprise_manager_ops_center | 12.2.2 |
| oracle | enterprise_manager_ops_center | 12.3.2 |
| oracle | linux | 5 |
| oracle | linux | 6 |
| oracle | linux | 7 |
| oracle | solaris | 11.3 |
| fedoraproject | fedora | 23 |
| fedoraproject | fedora | 24 |
| redhat | jboss_web_server | 2.1.0 |
| redhat | enterprise_linux | 6.0 |
| redhat | enterprise_linux | 7.0 |
| redhat | jboss_enterprise_web_server | 2.0.0 |
| redhat | jboss_enterprise_web_server | 3.0.0 |
| redhat | enterprise_linux | 6.0 |
| redhat | jboss_enterprise_web_server | 2.0.0 |
| redhat | jboss_enterprise_web_server | 3.0.0 |
| redhat | enterprise_linux | 7.0 |
| redhat | jboss_core_services | 1.0 |
| redhat | enterprise_linux | 6.0 |
| redhat | enterprise_linux | 7.0 |
| redhat | enterprise_linux_desktop | 6.0 |
| redhat | enterprise_linux_desktop | 7.0 |
| redhat | enterprise_linux_eus | 7.2 |
| redhat | enterprise_linux_eus | 7.3 |
| redhat | enterprise_linux_eus | 7.4 |
| redhat | enterprise_linux_eus | 7.5 |
| redhat | enterprise_linux_eus | 7.6 |
| redhat | enterprise_linux_eus | 7.7 |
| redhat | enterprise_linux_server | 6.0 |
| redhat | enterprise_linux_server | 7.0 |
| redhat | enterprise_linux_server_aus | 7.2 |
| redhat | enterprise_linux_server_aus | 7.3 |
| redhat | enterprise_linux_server_aus | 7.4 |
| redhat | enterprise_linux_server_aus | 7.6 |
| redhat | enterprise_linux_server_aus | 7.7 |
| redhat | enterprise_linux_server_tus | 7.2 |
Check a specific version with /api/v1/cve/match.
References
- http://lists.opensuse.org/opensuse-updates/2016-07/msg00059.html
- http://rhn.redhat.com/errata/RHSA-2016-1624.html
- http://rhn.redhat.com/errata/RHSA-2016-1625.html
- http://rhn.redhat.com/errata/RHSA-2016-1648.html
- http://rhn.redhat.com/errata/RHSA-2016-1649.html
- http://rhn.redhat.com/errata/RHSA-2016-1650.html
- http://www.debian.org/security/2016/dsa-3623
- http://www.kb.cert.org/vuls/id/797896
- http://www.oracle.com/technetwork/security-advisory/cpujan2018-3236628.html
- http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html
- http://www.oracle.com/technetwork/topics/security/bulletinoct2016-3090566.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinjul2016-3090544.html
- http://www.securityfocus.com/bid/91816
- http://www.securitytracker.com/id/1036330
- http://www.ubuntu.com/usn/USN-3038-1
- https://access.redhat.com/errata/RHSA-2016:1420
- https://access.redhat.com/errata/RHSA-2016:1421
- https://access.redhat.com/errata/RHSA-2016:1422
- https://access.redhat.com/errata/RHSA-2016:1635
- https://access.redhat.com/errata/RHSA-2016:1636
- https://access.redhat.com/errata/RHSA-2016:1851
- https://h20566.www2.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbhf03770en_us
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05320149
- https://h20566.www2.hpe.com/portal/site/hpsc/public/kb/docDisplay?docId=emr_na-c05390722
- https://httpoxy.org/
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2016-5387