REDHAT-BUG-2381959
Use of Insufficiently Random Values vulnerability in form-data allows HTTP Parameter Pollution (HPP). This vulnerability is associated with program files lib/form_data.Js. This issue affects form-data: < 2.5.4, 3.0.0 - 3.0.3, 4.0.0 - 4.0.3.
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-2381959?
The severity of REDHAT-BUG-2381959 is considered moderate due to its potential for HTTP Parameter Pollution.
How do I fix REDHAT-BUG-2381959?
To fix REDHAT-BUG-2381959, upgrade the form-data library to versions higher than 4.0.3 or apply available patches.
What versions are affected by REDHAT-BUG-2381959?
REDHAT-BUG-2381959 affects form-data versions below 2.5.4, and from 3.0.0 to 3.0.3, and from 4.0.0 to 4.0.3.
Is REDHAT-BUG-2381959 a common vulnerability?
Yes, REDHAT-BUG-2381959 is a known vulnerability that can occur with improper handling of random values in form-data.
What are the implications of REDHAT-BUG-2381959 on web applications?
The implications of REDHAT-BUG-2381959 on web applications include potential manipulation of HTTP parameters, leading to unauthorized access and data exposure.