pcsd reveals version information in the "Server" HTTP header
Issue
- When a HTTP request is run against
pcsd
(port 2224 by default), it sends theServer
HTTP header, containing information about versions of web server components. This presents a security vulnerability.
Environment
- Red Hat Enterprise Linux Server 7, 8, 9 (with the High Availability Add On)
Subscriber exclusive content
A Red Hat subscription provides unlimited access to our knowledgebase, tools, and much more.