Description
HttpObjectDecoder.java in Netty before 4.1.44 allows a Content-Length header to be accompanied by a second Content-Length header, or by a Transfer-Encoding header.
Remediation
References
Related Vulnerabilities
Ruby on Rails Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-6417)
WordPress Plugin WP Google Maps Cross-Site Request Forgery (7.11.27)
WordPress Plugin Share Possible Remote Code Execution (1.0)
Nginx CVE-2010-4180 Vulnerability (CVE-2010-4180)
WordPress Plugin myLinksDump 'url' Parameter SQL Injection (1.2)