USN-5364-1: Waitress vulnerability
5 April 2022
waitress could be made to expose sensitive information if it received a specially crafted request.
Releases
Packages
- waitress - production-quality pure-Python WSGI server (documentation)
Details
It was discovered that Waitress incorrectly handled certain requests.
An attacker could possibly use this issue to expose sensitive information.
Update instructions
The problem can be corrected by updating your system to the following package versions:
Ubuntu 21.10
Ubuntu 20.04
In general, a standard system update will make all the necessary changes.