CVE-2020-13943
medium · 4.3If an HTTP/2 client connecting to Apache Tomcat 10.0.0-M1 to 10.0.0-M7, 9.0.0.M1 to 9.0.37 or 8.5.0 to 8.5.57 exceeded the agreed maximum number of concurrent streams for a connection (in violation of the HTTP/2 protocol), it was possible that a subsequent request made on that connection could contain HTTP headers - including HTTP/2 pseudo headers - from a previous request rather than the intended headers. This could lead to users seeing responses for unexpected resources.
4.3
CVSS
57.3%
EPSS (exploit prob.)
99th
EPSS percentile
2020-10-12
Published
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| apache | tomcat | 8.5.0 |
| apache | tomcat | 8.5.1 |
| apache | tomcat | 8.5.2 |
| apache | tomcat | 8.5.3 |
| apache | tomcat | 8.5.4 |
| apache | tomcat | 8.5.5 |
| apache | tomcat | 8.5.6 |
| apache | tomcat | 8.5.7 |
| apache | tomcat | 8.5.8 |
| apache | tomcat | 8.5.9 |
| apache | tomcat | 8.5.10 |
| apache | tomcat | 8.5.11 |
| apache | tomcat | 8.5.12 |
| apache | tomcat | 8.5.13 |
| apache | tomcat | 8.5.14 |
| apache | tomcat | 8.5.15 |
| apache | tomcat | 8.5.16 |
| apache | tomcat | 8.5.17 |
| apache | tomcat | 8.5.18 |
| apache | tomcat | 8.5.19 |
| apache | tomcat | 8.5.20 |
| apache | tomcat | 8.5.21 |
| apache | tomcat | 8.5.22 |
| apache | tomcat | 8.5.23 |
| apache | tomcat | 8.5.24 |
| apache | tomcat | 8.5.25 |
| apache | tomcat | 8.5.26 |
| apache | tomcat | 8.5.27 |
| apache | tomcat | 8.5.28 |
| apache | tomcat | 8.5.29 |
| apache | tomcat | 8.5.30 |
| apache | tomcat | 8.5.31 |
| apache | tomcat | 8.5.32 |
| apache | tomcat | 8.5.33 |
| apache | tomcat | 8.5.34 |
| apache | tomcat | 8.5.35 |
| apache | tomcat | 8.5.36 |
| apache | tomcat | 8.5.37 |
| apache | tomcat | 8.5.38 |
| apache | tomcat | 8.5.39 |
Check a specific version with /api/v1/cve/match.
References
- http://lists.opensuse.org/opensuse-security-announce/2020-11/msg00002.html
- http://lists.opensuse.org/opensuse-security-announce/2020-11/msg00021.html
- https://lists.apache.org/thread.html/r4a390027eb27e4550142fac6c8317cc684b157ae314d31514747f307%40%3Cannounce.tomcat.apache.org%3E
- https://lists.debian.org/debian-lts-announce/2020/10/msg00019.html
- https://security.netapp.com/advisory/ntap-20201016-0007/
- https://www.debian.org/security/2021/dsa-4835
- https://www.oracle.com/security-alerts/cpuApr2021.html
- http://lists.opensuse.org/opensuse-security-announce/2020-11/msg00002.html
- http://lists.opensuse.org/opensuse-security-announce/2020-11/msg00021.html
- https://lists.apache.org/thread.html/r4a390027eb27e4550142fac6c8317cc684b157ae314d31514747f307%40%3Cannounce.tomcat.apache.org%3E
- https://lists.debian.org/debian-lts-announce/2020/10/msg00019.html
- https://security.netapp.com/advisory/ntap-20201016-0007/
- https://www.debian.org/security/2021/dsa-4835
- https://www.oracle.com/security-alerts/cpuApr2021.html
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2020-13943