Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-39456

Опубликовано: 17 окт. 2023
Источник: debian

Описание

Improper Input Validation vulnerability in Apache Traffic Server with malformed HTTP/2 frames.This issue affects Apache Traffic Server: from 9.0.0 through 9.2.2. Users are recommended to upgrade to version 9.2.3, which fixes the issue.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
trafficserverfixed9.2.3+ds-1package
trafficserverfixed9.2.3+ds-1+deb12u1bookwormpackage
trafficservernot-affectedbullseyepackage
trafficservernot-affectedbusterpackage

Примечания

  • https://lists.apache.org/thread/5py8h42mxfsn8l1wy6o41xwhsjlsd87q

  • https://github.com/apache/trafficserver/commit/4ca137b59bc6aaa25f8b14db2bdd2e72c43502e5 (9.2.3-rc0)

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 2 лет назад

Improper Input Validation vulnerability in Apache Traffic Server with malformed HTTP/2 frames.This issue affects Apache Traffic Server: from 9.0.0 through 9.2.2. Users are recommended to upgrade to version 9.2.3, which fixes the issue.

CVSS3: 7.5
nvd
больше 2 лет назад

Improper Input Validation vulnerability in Apache Traffic Server with malformed HTTP/2 frames.This issue affects Apache Traffic Server: from 9.0.0 through 9.2.2. Users are recommended to upgrade to version 9.2.3, which fixes the issue.

CVSS3: 7.5
github
больше 2 лет назад

Improper Input Validation vulnerability in Apache Traffic Server with malformed HTTP/2 frames.This issue affects Apache Traffic Server: from 9.0.0 through 9.2.2. Users are recommended to upgrade to version 9.2.3, which fixes the issue.