debian · CVE-2005-3751

Quick triage

Priority: low Published: Updated: Thu, 25 Jun 2026 00:58:56 GMT

View at Official debian advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2005-3751 low priority: Debian including 1 source packages (pound), 4 status rows across 4 suites (bullseye, forky, sid, trixie): resolved 4.

Description:

HTTP request smuggling vulnerability in Pound before 1.9.4 allows remote attackers to poison web caches, bypass web application firewall protection, and conduct XSS attacks via an HTTP request with conflicting Content-length and Transfer-encoding headers.

cvelogic Threat Intelligence