CVE-2023-29406
Vulnerability Summary
Timeline
Description
The HTTP/1 client does not fully validate the contents of the Host header. A maliciously crafted Host header can inject additional headers or entire requests. With fix, the HTTP/1 client now refuses to send requests containing an invalid Request.Host or Request.URL.Host value.
CVSS Metrics
- v3.1•MEDIUM•Score: 6.5CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
EPSS Trends
Current EPSS score: 1.45%• Percentile: 72%
Techniques & Countermeasures
- CWE-436•Interpretation Conflict
Product A handles inputs or steps differently than Product B, which causes A to perform incorrect actions based on its perception of B's state.
Affected Systems
- chainguard•go-1.20
< 1.20.6-r0
- chainguard•go-1.21
all
- chainguard•katib-earlystopping
< 0.19.0-r31
- chainguard•katib-suggestion-goptuna-compat
all
- chainguard•katib-suggestion-hyperband
< 0.19.0-r31
- chainguard•katib-suggestion-hyperopt
< 0.19.0-r31 | < 0.19.0-r40
- chainguard•katib-suggestion-nas-darts
< 0.19.0-r31
- chainguard•katib-suggestion-nas-enas
< 0.19.0-r31
- chainguard•katib-suggestion-optuna-enas
< 0.19.0-r31
- chainguard•katib-suggestion-pbt-enas
< 0.19.0-r31
- chainguard•katib-suggestion-skopt-enas
< 0.19.0-r31
- chainguard•katib-tfevent-metricscollector
< 0.19.0-r31
- chainguard•kind
< 0.21.0-r0
- wolfi•go-1.20
< 1.20.6-r0
- wolfi•go-1.21
all
- wolfi•katib-earlystopping
< 0.19.0-r31
- wolfi•katib-suggestion-goptuna-compat
all
- wolfi•katib-suggestion-hyperband
< 0.19.0-r31
- wolfi•katib-suggestion-hyperopt
< 0.19.0-r31 | < 0.19.0-r40
- wolfi•katib-suggestion-nas-darts
< 0.19.0-r31
- wolfi•katib-suggestion-nas-enas
< 0.19.0-r31
- wolfi•katib-suggestion-optuna-enas
< 0.19.0-r31
- wolfi•katib-suggestion-pbt-enas
< 0.19.0-r31
- wolfi•katib-suggestion-skopt-enas
< 0.19.0-r31
- wolfi•katib-tfevent-metricscollector
< 0.19.0-r31
- wolfi•kind
< 0.21.0-r0
- debian•golang-1.15
all
- debian•golang-1.19
all
- go standard library•net/http
< 1.19.11 | ≥ 1.20.0-0, < 1.20.6
- golang•go
< 1.19.11 | ≥ 1.20.0, < 1.20.6
- Go•stdlib
≥ 1.20.0-0, < 1.20.6
- redhat•aardvark-dns
< 2:1.0.1-38.module+el8.9.0+20325+b2853e6e
- redhat•buildah
< 1:1.24.6-7.module+el8.9.0+20325+b2853e6e
- redhat•buildah-debuginfo
< 1:1.24.6-7.module+el8.9.0+20325+b2853e6e
- redhat•buildah-debugsource
< 1:1.24.6-7.module+el8.9.0+20325+b2853e6e
- redhat•buildah-tests
< 1:1.24.6-7.module+el8.9.0+20325+b2853e6e
- redhat•buildah-tests-debuginfo
< 1:1.24.6-7.module+el8.9.0+20325+b2853e6e
- redhat•cockpit-podman
< 0:46-1.module+el8.9.0+20325+b2853e6e
- redhat•conmon
< 2:2.1.4-2.module+el8.9.0+20325+b2853e6e
- redhat•conmon-debuginfo
< 2:2.1.4-2.module+el8.9.0+20325+b2853e6e
- redhat•conmon-debugsource
< 2:2.1.4-2.module+el8.9.0+20325+b2853e6e
- redhat•container-selinux
< 2:2.205.0-3.module+el8.9.0+20325+b2853e6e
- redhat•containernetworking-plugins
< 1:1.1.1-5.module+el8.9.0+20325+b2853e6e
- redhat•containernetworking-plugins-debuginfo
< 1:1.1.1-5.module+el8.9.0+20325+b2853e6e
- redhat•containernetworking-plugins-debugsource
< 1:1.1.1-5.module+el8.9.0+20325+b2853e6e
- redhat•containers-common
< 2:1-38.module+el8.9.0+20325+b2853e6e
- redhat•crit
< 0:3.15-3.module+el8.9.0+20325+b2853e6e
- redhat•criu
< 0:3.15-3.module+el8.9.0+20325+b2853e6e
- redhat•criu-debuginfo
< 0:3.15-3.module+el8.9.0+20325+b2853e6e
- redhat•criu-debugsource
< 0:3.15-3.module+el8.9.0+20325+b2853e6e
Showing first 50 affected entries in server-rendered view.
References (22)
- https://go.dev/issue/60374
- https://go.dev/cl/506996
- https://groups.google.com/g/golang-announce/c/2q13H6LEEx0
- https://pkg.go.dev/vuln/GO-2023-1878
- https://security.netapp.com/advisory/ntap-20230814-0002/
- https://security.gentoo.org/glsa/202311-09
- https://access.redhat.com/errata/RHBA-2024:2274
- https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/9/html/9.4_release_notes/index
- https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhba-2024_2274.json
- https://access.redhat.com/security/cve/CVE-2023-29406
- https://bugzilla.redhat.com/show_bug.cgi?id=2222167
- https://www.cve.org/CVERecord?id=CVE-2023-29406
- https://nvd.nist.gov/vuln/detail/CVE-2023-29406
- https://access.redhat.com/errata/RHBA-2024:3053
- https://access.redhat.com/documentation/en-us/red_hat_enterprise_linux/8/html/8.10_release_notes/index
- https://security.access.redhat.com/data/csaf/v2/advisories/2024/rhba-2024_3053.json
- https://access.redhat.com/errata/RHSA-2023:7202
- https://access.redhat.com/security/updates/classification/#moderate
- https://bugzilla.redhat.com/show_bug.cgi?id=2242871
- https://issues.redhat.com/browse/RHEL-13035
- https://security.access.redhat.com/data/csaf/v2/advisories/2023/rhsa-2023_7202.json
- https://security-tracker.debian.org/tracker/CVE-2023-29406