High severityNVD Advisory· Published Oct 4, 2023· Updated Nov 3, 2025
`Cookie` HTTP header isn't stripped on cross-origin redirects
CVE-2023-43804
Description
urllib3 is a user-friendly HTTP client library for Python. urllib3 doesn't treat the Cookie HTTP header special or provide any helpers for managing cookies over HTTP, that is the responsibility of the user. However, it is possible for a user to specify a Cookie header and unknowingly leak information via HTTP redirects to a different origin if that user doesn't disable redirects explicitly. This issue has been patched in urllib3 version 1.26.17 or 2.0.5.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
urllib3PyPI | >= 2.0.0, < 2.0.6 | 2.0.6 |
urllib3PyPI | < 1.26.17 | 1.26.17 |
Affected products
213- osv-coords212 versionspkg:apk/chainguard/dask-gatewaypkg:apk/chainguard/dask-gateway-serverpkg:apk/chainguard/k8s-sidecarpkg:apk/chainguard/kube-downscalerpkg:apk/chainguard/kubeflow-jupyter-web-apppkg:apk/chainguard/kubeflow-volumes-web-apppkg:apk/chainguard/py3.10-urllib3pkg:apk/chainguard/py3.11-urllib3pkg:apk/chainguard/py3.12-urllib3pkg:apk/chainguard/py3.13-scanner-test-librariespkg:apk/chainguard/py3-urllib3pkg:apk/chainguard/py3-urllib3-1pkg:apk/wolfi/dask-gatewaypkg:apk/wolfi/dask-gateway-serverpkg:apk/wolfi/k8s-sidecarpkg:apk/wolfi/kube-downscalerpkg:apk/wolfi/kubeflow-jupyter-web-apppkg:apk/wolfi/kubeflow-volumes-web-apppkg:apk/wolfi/py3.10-urllib3pkg:apk/wolfi/py3.11-urllib3pkg:apk/wolfi/py3.12-urllib3pkg:apk/wolfi/py3-urllib3pkg:apk/wolfi/py3-urllib3-1pkg:pypi/urllib3pkg:rpm/almalinux/babelpkg:rpm/almalinux/fence-agents-aliyunpkg:rpm/almalinux/fence-agents-allpkg:rpm/almalinux/fence-agents-amt-wspkg:rpm/almalinux/fence-agents-apcpkg:rpm/almalinux/fence-agents-apc-snmppkg:rpm/almalinux/fence-agents-awspkg:rpm/almalinux/fence-agents-azure-armpkg:rpm/almalinux/fence-agents-bladecenterpkg:rpm/almalinux/fence-agents-brocadepkg:rpm/almalinux/fence-agents-cisco-mdspkg:rpm/almalinux/fence-agents-cisco-ucspkg:rpm/almalinux/fence-agents-commonpkg:rpm/almalinux/fence-agents-computepkg:rpm/almalinux/fence-agents-drac5pkg:rpm/almalinux/fence-agents-eaton-snmppkg:rpm/almalinux/fence-agents-emersonpkg:rpm/almalinux/fence-agents-epspkg:rpm/almalinux/fence-agents-gcepkg:rpm/almalinux/fence-agents-heuristics-pingpkg:rpm/almalinux/fence-agents-hpbladepkg:rpm/almalinux/fence-agents-ibmbladepkg:rpm/almalinux/fence-agents-ibm-powervspkg:rpm/almalinux/fence-agents-ibm-vpcpkg:rpm/almalinux/fence-agents-ifmibpkg:rpm/almalinux/fence-agents-ilo2pkg:rpm/almalinux/fence-agents-ilo-moonshotpkg:rpm/almalinux/fence-agents-ilo-mppkg:rpm/almalinux/fence-agents-ilo-sshpkg:rpm/almalinux/fence-agents-intelmodularpkg:rpm/almalinux/fence-agents-ipdupkg:rpm/almalinux/fence-agents-ipmilanpkg:rpm/almalinux/fence-agents-kdumppkg:rpm/almalinux/fence-agents-kubevirtpkg:rpm/almalinux/fence-agents-lparpkg:rpm/almalinux/fence-agents-mpathpkg:rpm/almalinux/fence-agents-openstackpkg:rpm/almalinux/fence-agents-redfishpkg:rpm/almalinux/fence-agents-rhevmpkg:rpm/almalinux/fence-agents-rsapkg:rpm/almalinux/fence-agents-rsbpkg:rpm/almalinux/fence-agents-sbdpkg:rpm/almalinux/fence-agents-scsipkg:rpm/almalinux/fence-agents-virshpkg:rpm/almalinux/fence-agents-vmware-restpkg:rpm/almalinux/fence-agents-vmware-soappkg:rpm/almalinux/fence-agents-wtipkg:rpm/almalinux/fence-agents-zvmpkg:rpm/almalinux/fence-virtpkg:rpm/almalinux/fence-virtdpkg:rpm/almalinux/fence-virtd-cpgpkg:rpm/almalinux/fence-virtd-libvirtpkg:rpm/almalinux/fence-virtd-multicastpkg:rpm/almalinux/fence-virtd-serialpkg:rpm/almalinux/fence-virtd-tcppkg:rpm/almalinux/ha-cloud-supportpkg:rpm/almalinux/python2pkg:rpm/almalinux/python2-attrspkg:rpm/almalinux/python2-babelpkg:rpm/almalinux/python2-backportspkg:rpm/almalinux/python2-backports-ssl_match_hostnamepkg:rpm/almalinux/python2-bsonpkg:rpm/almalinux/python2-chardetpkg:rpm/almalinux/python2-coveragepkg:rpm/almalinux/python2-Cythonpkg:rpm/almalinux/python2-debugpkg:rpm/almalinux/python2-develpkg:rpm/almalinux/python2-dnspkg:rpm/almalinux/python2-docspkg:rpm/almalinux/python2-docs-infopkg:rpm/almalinux/python2-docutilspkg:rpm/almalinux/python2-funcsigspkg:rpm/almalinux/python2-idnapkg:rpm/almalinux/python2-ipaddresspkg:rpm/almalinux/python2-jinja2pkg:rpm/almalinux/python2-libspkg:rpm/almalinux/python2-lxmlpkg:rpm/almalinux/python2-markupsafepkg:rpm/almalinux/python2-mockpkg:rpm/almalinux/python2-nosepkg:rpm/almalinux/python2-numpypkg:rpm/almalinux/python2-numpy-docpkg:rpm/almalinux/python2-numpy-f2pypkg:rpm/almalinux/python2-pippkg:rpm/almalinux/python2-pip-wheelpkg:rpm/almalinux/python2-pluggypkg:rpm/almalinux/python2-psycopg2pkg:rpm/almalinux/python2-psycopg2-debugpkg:rpm/almalinux/python2-psycopg2-testspkg:rpm/almalinux/python2-pypkg:rpm/almalinux/python2-pygmentspkg:rpm/almalinux/python2-pymongopkg:rpm/almalinux/python2-pymongo-gridfspkg:rpm/almalinux/python2-PyMySQLpkg:rpm/almalinux/python2-pysockspkg:rpm/almalinux/python2-pytestpkg:rpm/almalinux/python2-pytest-mockpkg:rpm/almalinux/python2-pytzpkg:rpm/almalinux/python2-pyyamlpkg:rpm/almalinux/python2-requestspkg:rpm/almalinux/python2-rpm-macrospkg:rpm/almalinux/python2-scipypkg:rpm/almalinux/python2-setuptoolspkg:rpm/almalinux/python2-setuptools_scmpkg:rpm/almalinux/python2-setuptools-wheelpkg:rpm/almalinux/python2-sixpkg:rpm/almalinux/python2-sqlalchemypkg:rpm/almalinux/python2-testpkg:rpm/almalinux/python2-tkinterpkg:rpm/almalinux/python2-toolspkg:rpm/almalinux/python2-urllib3pkg:rpm/almalinux/python2-virtualenvpkg:rpm/almalinux/python2-wheelpkg:rpm/almalinux/python2-wheel-wheelpkg:rpm/almalinux/python3.11-urllib3pkg:rpm/almalinux/python39pkg:rpm/almalinux/python39-attrspkg:rpm/almalinux/python39-cffipkg:rpm/almalinux/python39-chardetpkg:rpm/almalinux/python39-cryptographypkg:rpm/almalinux/python39-Cythonpkg:rpm/almalinux/python39-debugpkg:rpm/almalinux/python39-develpkg:rpm/almalinux/python39-idlepkg:rpm/almalinux/python39-idnapkg:rpm/almalinux/python39-iniconfigpkg:rpm/almalinux/python39-libspkg:rpm/almalinux/python39-lxmlpkg:rpm/almalinux/python39-mod_wsgipkg:rpm/almalinux/python39-more-itertoolspkg:rpm/almalinux/python39-numpypkg:rpm/almalinux/python39-numpy-docpkg:rpm/almalinux/python39-numpy-f2pypkg:rpm/almalinux/python39-packagingpkg:rpm/almalinux/python39-pippkg:rpm/almalinux/python39-pip-wheelpkg:rpm/almalinux/python39-pluggypkg:rpm/almalinux/python39-plypkg:rpm/almalinux/python39-psutilpkg:rpm/almalinux/python39-psycopg2pkg:rpm/almalinux/python39-psycopg2-docpkg:rpm/almalinux/python39-psycopg2-testspkg:rpm/almalinux/python39-pypkg:rpm/almalinux/python39-pybind11pkg:rpm/almalinux/python39-pybind11-develpkg:rpm/almalinux/python39-pycparserpkg:rpm/almalinux/python39-PyMySQLpkg:rpm/almalinux/python39-pyparsingpkg:rpm/almalinux/python39-pysockspkg:rpm/almalinux/python39-pytestpkg:rpm/almalinux/python39-pyyamlpkg:rpm/almalinux/python39-requestspkg:rpm/almalinux/python39-rpm-macrospkg:rpm/almalinux/python39-scipypkg:rpm/almalinux/python39-setuptoolspkg:rpm/almalinux/python39-setuptools-wheelpkg:rpm/almalinux/python39-sixpkg:rpm/almalinux/python39-testpkg:rpm/almalinux/python39-tkinterpkg:rpm/almalinux/python39-tomlpkg:rpm/almalinux/python39-urllib3pkg:rpm/almalinux/python39-wcwidthpkg:rpm/almalinux/python39-wheelpkg:rpm/almalinux/python39-wheel-wheelpkg:rpm/almalinux/python3-urllib3pkg:rpm/almalinux/python-nose-docspkg:rpm/almalinux/python-psycopg2-docpkg:rpm/almalinux/python-sqlalchemy-docpkg:rpm/opensuse/python-urllib3&distro=openSUSE%20Tumbleweedpkg:rpm/suse/python-urllib3&distro=HPE%20Helion%20OpenStack%208pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Micro%205.1pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Micro%205.2pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Micro%205.3pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Micro%205.4pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Micro%205.5pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP4pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Basesystem%2015%20SP5pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Public%20Cloud%2012pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Server%2012%20SP5pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Server%20for%20SAP%20Applications%2012%20SP5pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Software%20Development%20Kit%2012%20SP5pkg:rpm/suse/python-urllib3&distro=SUSE%20Linux%20Enterprise%20Workstation%20Extension%2012%20SP5pkg:rpm/suse/python-urllib3&distro=SUSE%20Manager%20Proxy%204.2pkg:rpm/suse/python-urllib3&distro=SUSE%20Manager%20Server%204.2pkg:rpm/suse/python-urllib3&distro=SUSE%20OpenStack%20Cloud%208pkg:rpm/suse/python-urllib3&distro=SUSE%20OpenStack%20Cloud%209pkg:rpm/suse/python-urllib3&distro=SUSE%20OpenStack%20Cloud%20Crowbar%208pkg:rpm/suse/python-urllib3&distro=SUSE%20OpenStack%20Cloud%20Crowbar%209
< 2023.9.0-r1+ 211 more
- (no CPE)range: < 2023.9.0-r1
- (no CPE)range: < 2023.9.0-r1
- (no CPE)range: < 1.25.1-r2
- (no CPE)range: < 23.2.0-r6
- (no CPE)range: < 1.7.0-r5
- (no CPE)range: < 1.7.0-r6
- (no CPE)range: < 2.0.6-r0
- (no CPE)range: < 2.0.6-r0
- (no CPE)range: < 2.0.6-r0
- (no CPE)range: < 0.0.1-r2
- (no CPE)range: < 2.0.6-r0
- (no CPE)range: < 1.26.17-r0
- (no CPE)range: < 2023.9.0-r1
- (no CPE)range: < 2023.9.0-r1
- (no CPE)range: < 1.25.1-r2
- (no CPE)range: < 23.2.0-r6
- (no CPE)range: < 1.7.0-r5
- (no CPE)range: < 1.7.0-r6
- (no CPE)range: < 2.0.6-r0
- (no CPE)range: < 2.0.6-r0
- (no CPE)range: < 2.0.6-r0
- (no CPE)range: < 2.0.6-r0
- (no CPE)range: < 1.26.17-r0
- (no CPE)range: >= 2.0.0, < 2.0.6
- (no CPE)range: < 2.5.1-10.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 4.10.0-55.el9_3.2.alma.1
- (no CPE)range: < 2.7.18-17.module_el8.10.0+3783+2756348e.alma
- (no CPE)range: < 17.4.0-10.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 2.5.1-10.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 1.0-16.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 3.5.0.1-12.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 3.7.0-1.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 3.0.4-10.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 4.5.1-5.module_el8.9.0+3640+8d3927b5
- (no CPE)range: < 0.28.1-7.module_el8.6.0+3162+01a09e5a
- (no CPE)range: < 2.7.18-17.module_el8.10.0+3783+2756348e.alma
- (no CPE)range: < 2.7.18-17.module_el8.10.0+3783+2756348e.alma
- (no CPE)range: < 1.15.0-10.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 2.7.16-2.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 2.7.16-2.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 0.14-12.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 1.0.2-13.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 2.5-7.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 1.0.18-6.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 2.10-10.module_el8.10.0+3783+2756348e
- (no CPE)range: < 2.7.18-17.module_el8.10.0+3783+2756348e.alma
- (no CPE)range: < 4.2.3-6.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 0.23-19.module_el8.6.0+3162+01a09e5a
- (no CPE)range: < 2.0.0-13.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 1.3.7-31.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 1:1.14.2-16.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 1:1.14.2-16.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 1:1.14.2-16.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 9.0.3-19.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 9.0.3-19.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 0.6.0-8.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 2.7.5-8.module_el8.9.0+3640+8d3927b5
- (no CPE)range: < 2.7.5-8.module_el8.9.0+3640+8d3927b5
- (no CPE)range: < 2.7.5-8.module_el8.9.0+3640+8d3927b5
- (no CPE)range: < 1.5.3-6.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 2.2.0-22.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 3.7.0-1.module_el8.6.0+3162+01a09e5a
- (no CPE)range: < 3.7.0-1.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 0.8.0-10.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 1.6.8-6.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 3.4.2-13.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 1.9.0-4.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 2017.2-13.module_el8.9.0+3640+8d3927b5
- (no CPE)range: < 3.12-16.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 2.20.0-4.module_el8.9.0+3640+8d3927b5
- (no CPE)range: < 3-38.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 1.0.0-22.module_el8.9.0+3640+8d3927b5
- (no CPE)range: < 39.0.1-14.module_el8.10.0+3783+2756348e
- (no CPE)range: < 1.15.7-6.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 39.0.1-14.module_el8.10.0+3783+2756348e
- (no CPE)range: < 1.11.0-6.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 1.3.2-2.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 2.7.18-17.module_el8.10.0+3783+2756348e.alma
- (no CPE)range: < 2.7.18-17.module_el8.10.0+3783+2756348e.alma
- (no CPE)range: < 2.7.18-17.module_el8.10.0+3783+2756348e.alma
- (no CPE)range: < 1.24.2-4.module_el8.10.0+3783+2756348e
- (no CPE)range: < 15.1.0-22.module_el8.10.0+3783+2756348e
- (no CPE)range: < 1:0.31.1-3.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 1:0.31.1-3.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 1.26.12-2.el9
- (no CPE)range: < 3.9.18-3.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 20.3.0-2.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 1.14.3-2.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 3.0.4-19.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 3.3.1-3.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 0.29.21-5.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 3.9.18-3.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 3.9.18-3.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 3.9.18-3.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 2.10-3.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 1.1.1-2.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 3.9.18-3.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 4.6.5-1.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 4.7.1-7.module_el8.9.0+3634+fb2a896c
- (no CPE)range: < 8.5.0-2.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 1.19.4-3.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 1.19.4-3.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 1.19.4-3.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 20.4-4.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 20.2.4-9.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 20.2.4-9.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 0.13.1-3.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 3.11-10.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 5.8.0-4.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 2.8.6-3.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 2.8.6-3.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 2.8.6-3.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 1.10.0-1.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 2.7.1-1.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 2.7.1-1.module_el8.6.0+3248+c431e88c
- (no CPE)range: < 2.20-3.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 0.10.1-2.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 2.4.7-5.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 1.7.1-4.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 6.0.2-2.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 5.4.1-1.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 2.25.0-3.module_el8.9.0+3634+fb2a896c
- (no CPE)range: < 3.9.18-3.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 1.5.4-5.module_el8.9.0+3634+fb2a896c
- (no CPE)range: < 50.3.2-5.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 50.3.2-5.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 1.15.0-3.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 3.9.18-3.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 3.9.18-3.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 0.10.1-5.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 1.25.10-5.module_el8.10.0+3765+2f9a457d
- (no CPE)range: < 0.2.5-3.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 1:0.35.1-4.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 1:0.35.1-4.module_el8.6.0+2780+a40f65e1
- (no CPE)range: < 1.24.2-5.el8_9.2
- (no CPE)range: < 1.3.7-31.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 2.7.5-8.module_el8.9.0+3640+8d3927b5
- (no CPE)range: < 1.3.2-2.module_el8.6.0+2781+fed64c13
- (no CPE)range: < 2.0.6-1.1
- (no CPE)range: < 1.25.10-5.22.1
- (no CPE)range: < 1.25.10-150300.4.6.1
- (no CPE)range: < 1.25.10-150300.4.6.1
- (no CPE)range: < 1.25.10-150300.4.6.1
- (no CPE)range: < 1.25.10-150300.4.6.1
- (no CPE)range: < 1.25.10-150300.4.6.1
- (no CPE)range: < 1.25.10-150300.4.6.1
- (no CPE)range: < 1.25.10-150300.4.6.1
- (no CPE)range: < 1.25.10-3.34.1
- (no CPE)range: < 1.25.10-3.34.1
- (no CPE)range: < 1.25.10-3.34.1
- (no CPE)range: < 1.25.10-3.34.1
- (no CPE)range: < 1.25.10-3.34.1
- (no CPE)range: < 1.25.10-150300.4.6.1
- (no CPE)range: < 1.25.10-150300.4.6.1
- (no CPE)range: < 1.25.10-5.22.1
- (no CPE)range: < 1.23-3.25.1
- (no CPE)range: < 1.25.10-5.22.1
- (no CPE)range: < 1.23-3.25.1
Patches
Vulnerability mechanics
References
16- github.com/advisories/GHSA-v845-jxx5-vc9fghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2023-43804ghsaADVISORY
- github.com/pypa/advisory-database/tree/main/vulns/urllib3/PYSEC-2023-192.yamlghsaWEB
- github.com/urllib3/urllib3/commit/01220354d389cd05474713f8c982d05c9b17aafbghsax_refsource_MISCWEB
- github.com/urllib3/urllib3/commit/644124ecd0b6e417c527191f866daa05a5a2056dghsax_refsource_MISCWEB
- github.com/urllib3/urllib3/security/advisories/GHSA-v845-jxx5-vc9fghsax_refsource_CONFIRMWEB
- lists.debian.org/debian-lts-announce/2023/10/msg00012.htmlghsaWEB
- lists.debian.org/debian-lts-announce/2024/12/msg00020.htmlghsaWEB
- lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5F5CUBAN5XMEBVBZPHFITBLMJV5FIJJ5ghsaWEB
- lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/I3PR7C6RJ6JUBQKIJ644DMIJSUP36VDYghsaWEB
- lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NDAGZXYJ7H2G3SB47M453VQVNAWKAEJJghsaWEB
- security.netapp.com/advisory/ntap-20241213-0007ghsaWEB
- www.vicarius.io/vsociety/posts/cve-2023-43804-urllib3-vulnerability-3ghsaWEB
- lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5F5CUBAN5XMEBVBZPHFITBLMJV5FIJJ5/mitre
- lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/I3PR7C6RJ6JUBQKIJ644DMIJSUP36VDY/mitre
- lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/NDAGZXYJ7H2G3SB47M453VQVNAWKAEJJ/mitre
News mentions
0No linked articles in our index yet.