Tornado 'tornado.web.RequestHandler.set_header()' HTTP Response Splitting Vulnerability

Bugtraq ID: 53612
Class: Input Validation Error
CVE: CVE-2012-2374
Remote: Yes
Local: No
Published: May 18 2012 12:00AM
Updated: May 21 2012 08:20PM
Credit: The vendor reported this issue.
Vulnerable: Tornado Tornado 2.2
Not Vulnerable: Tornado Tornado 2.2.1


 

Privacy Statement
Copyright 2010, SecurityFocus