RHSA-2022:0722: Moderate: rh-maven36-httpcomponents-client security update
HttpClient is a HTTP/1.1 compliant HTTP agent implementation based on httpcomponents HttpCore. It also provides reusable components for client-side authentication, HTTP state management, and HTTP connection management.<br>Security Fix(es):<br><li> apache-httpclient: incorrect handling of malformed authority component in request URIs (CVE-2020-13956)</li> For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of RHSA-2022:0722?
The severity of RHSA-2022:0722 is classified as important.
How do I fix RHSA-2022:0722?
To fix RHSA-2022:0722, update to the fixed version 4.5.9-1.3.el7 of the affected packages.
What components are affected by RHSA-2022:0722?
RHSA-2022:0722 affects the rh-maven36-httpcomponents-client and rh-maven36-httpcomponents-client-javadoc packages.
What type of vulnerability is addressed in RHSA-2022:0722?
RHSA-2022:0722 addresses incorrect handling vulnerabilities in the Apache HttpClient.
Is there a specific version target for the remediation of RHSA-2022:0722?
Yes, the specific version target for remediation of RHSA-2022:0722 is 4.5.9-1.3.el7.