CVE-2005-2088
Summary
| CVE | CVE-2005-2088 |
|---|---|
| State | PUBLISHED |
| Assigner | redhat |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2005-07-05 04:00:00 UTC |
| Updated | 2025-04-03 01:03:51 UTC |
| Description | The Apache HTTP server before 1.3.34, and 2.0.x before 2.0.55, when acting as an HTTP proxy, allows remote attackers to poison the web cache, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with both a "Transfer-Encoding: chunked" header and a Content-Length header, which causes Apache to incorrectly handle and forward the body of the request in a way that causes the receiving server to process it as a separate HTTP request, aka "HTTP Request Smuggling." |
Risk And Classification
CVSS v2.0 Breakdown
Access Vector
NetworkAccess Complexity
MediumAuthentication
NoneConfidentiality
NoneIntegrity
PartialAvailability
NoneAV:N/AC:M/Au:N/C:N/I:P/A:N
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Application | Apache | Http Server | All | All | All | All |
| Operating System | Debian | Debian Linux | 3.0 | All | All | All |
| Operating System | Debian | Debian Linux | 3.1 | All | All | All |
Vendor Declared Affected Products
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| Secunia - Advisories - Mac OS X Security Update Fixes Multiple Vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Not Applicable |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | Broken Link, Third Party Advisory |
| SecurityFocus | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Broken Link, Third Party Advisory, VDB Entry |
| SecurityReason | af854a3a-2127-422b-91ae-364da2661108 | securityreason.com | Exploit, Third Party Advisory |
| Pony Mail! | af854a3a-2127-422b-91ae-364da2661108 | lists.apache.org | Mailing List, Vendor Advisory |
| Pony Mail! | af854a3a-2127-422b-91ae-364da2661108 | lists.apache.org | Mailing List, Vendor Advisory |
| 404 Not Found | af854a3a-2127-422b-91ae-364da2661108 | www.apache.org | Broken Link, Vendor Advisory |
| SecuriTeam.com ™ - HTTP Request Smuggling | af854a3a-2127-422b-91ae-364da2661108 | www.securiteam.com | Broken Link, Exploit |
| Secunia - Advisories - Sun Solaris Multiple Apache Vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Not Applicable |
| Pony Mail! | af854a3a-2127-422b-91ae-364da2661108 | lists.apache.org | Mailing List, Vendor Advisory |
| The Slackware Linux Project: Slackware Security Advisories | af854a3a-2127-422b-91ae-364da2661108 | slackware.com | Third Party Advisory |
| IBM Search results - United States | af854a3a-2127-422b-91ae-364da2661108 | www-1.ibm.com | Broken Link, Third Party Advisory |
| Pony Mail! | af854a3a-2127-422b-91ae-364da2661108 | lists.apache.org | Mailing List, Vendor Advisory |
| usn/usn-160-2 - Ubuntu Linux | af854a3a-2127-422b-91ae-364da2661108 | www.ubuntu.com | Broken Link |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | Broken Link, Third Party Advisory |
| About Security Update 2005-009 | af854a3a-2127-422b-91ae-364da2661108 | docs.info.apple.com | Broken Link |
| SecurityTracker.com Archives - Apache Chunked Transfer-Encoding and Content-Length Processing Lets Remote Users Smuggle HTTP Requests | af854a3a-2127-422b-91ae-364da2661108 | securitytracker.com | Broken Link, Third Party Advisory, VDB Entry |
| Secunia - Advisories - IBM HTTP Server HTTP Request Smuggling and mod_imap Vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Not Applicable |
| '[Announce] Apache HTTP Server 2.0.55 Released' - MARC | af854a3a-2127-422b-91ae-364da2661108 | marc.info | Mailing List, Third Party Advisory |
| Pony Mail! | af854a3a-2127-422b-91ae-364da2661108 | lists.apache.org | Mailing List, Vendor Advisory |
| #102198: Security Vulnerabilities in the Apache 2 Web Server | af854a3a-2127-422b-91ae-364da2661108 | sunsolve.sun.com | Broken Link |
| Webmail - OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | Broken Link, Permissions Required |
| Bugtraq: A new whitepaper by Watchfire - HTTP Request Smuggling | af854a3a-2127-422b-91ae-364da2661108 | seclists.org | Issue Tracking, Mailing List, Third Party Advisory |
| Secunia - Advisories - HP VirtualVault Apache HTTP Request Smuggling Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Not Applicable |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | Broken Link, Third Party Advisory |
| Novell NetWare Apache HTTP Request Smuggling Vulnerability - Advisories - Secunia | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Not Applicable |
| secure-support.novell.com/KanisaPlatform/Publishing/741/3222109_f.SAL_Public.html | af854a3a-2127-422b-91ae-364da2661108 | secure-support.novell.com | Broken Link |
| Secunia - Advisories - Slackware update for apache/mod_ssl | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Not Applicable |
| Pony Mail! | af854a3a-2127-422b-91ae-364da2661108 | lists.apache.org | Mailing List, Vendor Advisory |
| Debian -- Security Information -- DSA-805-1 apache2 | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | Mailing List, Third Party Advisory |
| 1. Overview: | af854a3a-2127-422b-91ae-364da2661108 | support.avaya.com | Third Party Advisory |
| Secunia - Advisories - Apache HTTP Request Smuggling Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Not Applicable |
| Pony Mail! | af854a3a-2127-422b-91ae-364da2661108 | lists.apache.org | Mailing List, Vendor Advisory |
| with a space causes the title to be misaligned in the listing. [David J. MacKenzie] *) Change mod_cern_meta to be configurable on a per-directory basis. [David J. MacKenzie] *) Add 'Include' directive to allow inclusion of configuration files within configuration files. [Randy Terbush] *) Proxy errors on connect() are logged to the error_log (nothing new); now they include the IP address and port that failed (*that's* new). [Ken Coar, Marc Slemko] PR#352 *) Various ar | af854a3a-2127-422b-91ae-364da2661108 | www.apache.org | Broken Link, Vendor Advisory |
| TSLSA-2005-0059 - multi | af854a3a-2127-422b-91ae-364da2661108 | lists.trustix.org | Broken Link |
| Advisories - Mandriva Linux | af854a3a-2127-422b-91ae-364da2661108 | www.mandriva.com | Third Party Advisory |
| Search results | af854a3a-2127-422b-91ae-364da2661108 | www-1.ibm.com | Broken Link, Third Party Advisory |
| Secunia - Advisories - Sun Solaris Multiple Apache2 Vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Not Applicable |
| Pony Mail! | af854a3a-2127-422b-91ae-364da2661108 | lists.apache.org | Mailing List, Vendor Advisory |
| Pony Mail! | af854a3a-2127-422b-91ae-364da2661108 | lists.apache.org | Mailing List, Vendor Advisory |
| Debian -- Security Information -- DSA-803-1 apache | af854a3a-2127-422b-91ae-364da2661108 | www.debian.org | Mailing List, Third Party Advisory |
| Webmail - OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | Broken Link, Permissions Required |
| Pony Mail! | af854a3a-2127-422b-91ae-364da2661108 | lists.apache.org | Mailing List, Vendor Advisory |
| Security Announcement | af854a3a-2127-422b-91ae-364da2661108 | www.novell.com | Broken Link |
| www1.itrc.hp.com/service/cki/docDisplay.do | af854a3a-2127-422b-91ae-364da2661108 | www1.itrc.hp.com | Broken Link |
| Pony Mail! | af854a3a-2127-422b-91ae-364da2661108 | lists.apache.org | Mailing List, Vendor Advisory |
| Apache HTTP Request Smuggling Vulnerability | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Broken Link, Third Party Advisory, VDB Entry |
| Support | af854a3a-2127-422b-91ae-364da2661108 | www.redhat.com | Broken Link, Third Party Advisory |
| Webmail : Solution de messagerie professionnelle - OVHcloud- OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | Broken Link, Permissions Required |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | Broken Link, Third Party Advisory |
| RETIRED: Apple Mac OS X Security Update 2005-009 Multiple Vulnerabilities | af854a3a-2127-422b-91ae-364da2661108 | www.securityfocus.com | Broken Link, Third Party Advisory, VDB Entry |
| IBM Software | IBM | af854a3a-2127-422b-91ae-364da2661108 | www.watchfire.com | Broken Link |
| Secunia - Advisories - SmoothWall Express Update for Multiple Packages | af854a3a-2127-422b-91ae-364da2661108 | secunia.com | Not Applicable |
| #102197: Security Vulnerabilities in the Apache 1.3 Web Server | af854a3a-2127-422b-91ae-364da2661108 | sunsolve.sun.com | Broken Link |
| Webmail - OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | Broken Link, Permissions Required |
| Repository / Oval Repository | af854a3a-2127-422b-91ae-364da2661108 | oval.cisecurity.org | Broken Link, Third Party Advisory |
| Security Announcement | af854a3a-2127-422b-91ae-364da2661108 | www.novell.com | Broken Link |
| Pony Mail! | af854a3a-2127-422b-91ae-364da2661108 | lists.apache.org | Mailing List, Vendor Advisory |
| Webmail - OVH | af854a3a-2127-422b-91ae-364da2661108 | www.vupen.com | Broken Link, Permissions Required |
| Pony Mail! | MITRE | lists.apache.org | |
| Pony Mail! | MITRE | lists.apache.org | |
| Pony Mail! | MITRE | lists.apache.org | |
| Pony Mail! | MITRE | lists.apache.org | |
| Pony Mail! | MITRE | lists.apache.org | |
| Pony Mail! | MITRE | lists.apache.org | |
| Pony Mail! | MITRE | lists.apache.org | |
| Pony Mail! | MITRE | lists.apache.org | |
| Pony Mail! | MITRE | lists.apache.org | |
| Pony Mail! | MITRE | lists.apache.org | |
| Pony Mail! | MITRE | lists.apache.org | |
| Pony Mail! | MITRE | lists.apache.org | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
Vendor Comments And Credit
| Organization | Published | Contributor | Statement |
|---|---|---|---|
| Apache | 2008-07-02 | Mark J Cox | Fixed in Apache HTTP Server 2.0.55: http://httpd.apache.org/security/vulnerabilities_20.html |
There are currently no legacy QID mappings associated with this CVE.