Jboss EAP Inconsistent Interpretation of HTTP Requests (HTTP Request Smuggling) Vulnerability - CVE-2019-16869 - Vulnerability Database

Jboss EAP Inconsistent Interpretation of HTTP Requests (HTTP Request Smuggling) Vulnerability - CVE-2019-16869

High
Reference: CVE-2019-16869
Title: Jboss EAP Inconsistent Interpretation of HTTP Requests (HTTP Request Smuggling) Vulnerability
Overview:

Netty before 4.1.42.Final mishandles whitespace before the colon in HTTP headers (such as a quotTransfer-Encoding : chunkedquot line) which leads to HTTP request smuggling.