CVE-2023-23934
Summary
| CVE | CVE-2023-23934 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-02-14 20:15:00 UTC |
| Updated | 2023-08-18 14:15:00 UTC |
| Description | Werkzeug is a comprehensive WSGI web application library. Browsers may allow "nameless" cookies that look like `=value` instead of `key=value`. A vulnerable browser may allow a compromised application on an adjacent subdomain to exploit this to set a cookie like `=__Host-test=bad` for another subdomain. Werkzeug prior to 2.2.3 will parse the cookie `=__Host-test=bad` as __Host-test=bad`. If a Werkzeug application is running next to a vulnerable or malicious subdomain which sets such a cookie using a vulnerable browser, the Werkzeug application will see the bad cookie value but the valid cookie key. The issue is fixed in Werkzeug 2.2.3. |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| Release 2.2.3 · pallets/werkzeug · GitHub |
MISC |
github.com |
|
| Merge pull request from GHSA-px8h-6qxv-m22q · pallets/werkzeug@cf275f4 · GitHub |
MISC |
github.com |
|
| February 2023 Werkzeug Vulnerabilities in NetApp Products | NetApp Product Security |
MISC |
security.netapp.com |
|
| cookie prefixed with `=` can shadow unprefixed cookie · Advisory · pallets/werkzeug · GitHub |
MISC |
github.com |
|
| Debian -- Security Information -- DSA-5470-1 python-werkzeug |
MISC |
www.debian.org |
|
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 160842 Oracle Enterprise Linux Security Update for python-werkzeug (ELSA-2023-12709)
- 181616 Debian Security Update for python-werkzeug (DLA 3346-1)
- 182278 Debian Security Update for python-werkzeug (CVE-2023-23934)
- 199235 Ubuntu Security Notification for Werkzeug Vulnerabilities (USN-5948-1)
- 199431 Ubuntu Security Notification for Werkzeug Vulnerabilities (USN-5948-2)
- 283790 Fedora Security Update for mingw (FEDORA-2023-af75e27098)
- 284255 Fedora Security Update for mingw (FEDORA-2023-8d94dccc7e)
- 355112 Amazon Linux Security Advisory for python-werkzeug : ALAS2023-2023-149
- 6000024 Debian Security Update for python-werkzeug (DSA 5470-1)
- 673119 EulerOS Security Update for python-werkzeug (EulerOS-SA-2023-2167)
- 905561 Common Base Linux Mariner (CBL-Mariner) Security Update for python-werkzeug (13589)
- 906614 Common Base Linux Mariner (CBL-Mariner) Security Update for python-werkzeug (13589-3)