Here are some more details about this, from the Tomcat 9.0 changelog:
https://ci.apache.org/projects/tomcat/tomcat9/docs/changelog.html.
Tomcat 9.0.33 introduces the fix:

> 64210: Correct a regression in the improvements to HTTP header
validation that caused requests to be incorrectly treated as invalid if
a CRLF sequence was split between TCP packets. Improve validation of
request lines, including for HTTP/0.9 requests. (markt)

The exact upstream commit which has the fix is available here:
https://github.com/apache/tomcat/commit/27a0c116e02ba9cd66873ded0e64b8c0fec2bc19

-- 
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/1913384

Title:
  Request header parsing fails in some cases with Tomcat 9.0.31

To manage notifications about this bug go to:
https://bugs.launchpad.net/ubuntu/+source/tomcat9/+bug/1913384/+subscriptions

-- 
ubuntu-bugs mailing list
[email protected]
https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs

Reply via email to