Improper Input Validation vulnerability in header parsing of Apache Traffic Server allows an attacker to smuggle requests. This issue affects Apache Traffic Server 8.0.0 to 8.1.2 and 9.0.0 to 9.1.0.
References
| Link | Resource |
|---|---|
| https://lists.apache.org/thread/k01797hyncx53659wr3o72s5cvkc3164 | Mailing List Patch Vendor Advisory |
| https://www.debian.org/security/2022/dsa-5153 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2021-11-03 16:15
Updated : 2022-06-02 14:15
NVD link : CVE-2021-37149
Mitre link : CVE-2021-37149
JSON object : View
Products Affected
apache
- traffic_server
CWE
CWE-20
Improper Input Validation
