CVE-2016-5699
python: http protocol steam injection attack
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
CRLF injection vulnerability in the HTTPConnection.putheader function in urllib2 and urllib in CPython (aka Python) before 2.7.10 and 3.x before 3.4.4 allows remote attackers to inject arbitrary HTTP headers via CRLF sequences in a URL.
Vulnerabilidad de inyección CRLF en la función HTTPConnection.putheader en urllib2 y urllib en CPython (también conocido como Python) en versiones anteriores a 2.7.10 y 3.x en versiones anteriores a 3.4.4 permite a atacantes remotos inyectar cabeceras HTTP arbitrarias a través de secuencias CRLF en una URL.
It was found that the Python's httplib library (used by urllib, urllib2 and others) did not properly check HTTPConnection.putheader() function arguments. An attacker could use this flaw to inject additional headers in a Python application that allowed user provided header names or values.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2016-06-16 CVE Reserved
- 2016-06-28 First Exploit
- 2016-08-21 CVE Published
- 2024-08-06 CVE Updated
- 2024-08-12 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-20: Improper Input Validation
- CWE-113: Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Request/Response Splitting')
CAPEC
References (22)
URL | Tag | Source |
---|---|---|
http://www.openwall.com/lists/oss-security/2016/06/14/7 | Mailing List | |
http://www.openwall.com/lists/oss-security/2016/06/15/12 | Mailing List | |
http://www.openwall.com/lists/oss-security/2016/06/16/2 | Mailing List | |
http://www.oracle.com/technetwork/topics/security/bulletinjul2016-3090568.html | X_refsource_confirm | |
http://www.securityfocus.com/bid/91226 | Vdb Entry | |
http://www.splunk.com/view/SP-CAAAPSV | X_refsource_confirm | |
http://www.splunk.com/view/SP-CAAAPUE | X_refsource_confirm | |
https://docs.python.org/3.4/whatsnew/changelog.html#python-3-4-4 | Release Notes | |
https://hg.python.org/cpython/raw-file/v2.7.10/Misc/NEWS | Release Notes | |
https://lists.debian.org/debian-lts-announce/2019/02/msg00011.html | Mailing List |
URL | Date | SRC |
---|---|---|
https://github.com/bunseokbot/CVE-2016-5699-poc | 2016-06-28 | |
http://blog.blindspotsecurity.com/2016/06/advisory-http-header-injection-in.html | 2024-08-06 |
URL | Date | SRC |
---|---|---|
https://hg.python.org/cpython/rev/1c45047c5102 | 2023-02-12 | |
https://hg.python.org/cpython/rev/bf3e1c9b80e9 | 2023-02-12 |
URL | Date | SRC |
---|---|---|
http://lists.opensuse.org/opensuse-security-announce/2020-01/msg00040.html | 2023-02-12 | |
http://rhn.redhat.com/errata/RHSA-2016-1626.html | 2023-02-12 | |
http://rhn.redhat.com/errata/RHSA-2016-1627.html | 2023-02-12 | |
http://rhn.redhat.com/errata/RHSA-2016-1628.html | 2023-02-12 | |
http://rhn.redhat.com/errata/RHSA-2016-1629.html | 2023-02-12 | |
http://rhn.redhat.com/errata/RHSA-2016-1630.html | 2023-02-12 | |
https://access.redhat.com/security/cve/CVE-2016-5699 | 2016-08-18 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1303699 | 2016-08-18 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | <= 2.7.9 Search vendor "Python" for product "Python" and version " <= 2.7.9" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.0 Search vendor "Python" for product "Python" and version "3.0" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.0.1 Search vendor "Python" for product "Python" and version "3.0.1" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.1.0 Search vendor "Python" for product "Python" and version "3.1.0" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.1.1 Search vendor "Python" for product "Python" and version "3.1.1" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.1.2 Search vendor "Python" for product "Python" and version "3.1.2" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.1.3 Search vendor "Python" for product "Python" and version "3.1.3" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.1.4 Search vendor "Python" for product "Python" and version "3.1.4" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.1.5 Search vendor "Python" for product "Python" and version "3.1.5" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.2.0 Search vendor "Python" for product "Python" and version "3.2.0" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.2.1 Search vendor "Python" for product "Python" and version "3.2.1" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.2.2 Search vendor "Python" for product "Python" and version "3.2.2" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.2.3 Search vendor "Python" for product "Python" and version "3.2.3" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.2.4 Search vendor "Python" for product "Python" and version "3.2.4" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.2.5 Search vendor "Python" for product "Python" and version "3.2.5" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.2.6 Search vendor "Python" for product "Python" and version "3.2.6" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.3.0 Search vendor "Python" for product "Python" and version "3.3.0" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.3.1 Search vendor "Python" for product "Python" and version "3.3.1" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.3.2 Search vendor "Python" for product "Python" and version "3.3.2" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.3.3 Search vendor "Python" for product "Python" and version "3.3.3" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.3.4 Search vendor "Python" for product "Python" and version "3.3.4" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.3.5 Search vendor "Python" for product "Python" and version "3.3.5" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.3.6 Search vendor "Python" for product "Python" and version "3.3.6" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.4.0 Search vendor "Python" for product "Python" and version "3.4.0" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.4.1 Search vendor "Python" for product "Python" and version "3.4.1" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.4.2 Search vendor "Python" for product "Python" and version "3.4.2" | - |
Affected
| ||||||
Python Search vendor "Python" | Python Search vendor "Python" for product "Python" | 3.4.3 Search vendor "Python" for product "Python" and version "3.4.3" | - |
Affected
|