Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2024-50305

Опубликовано: 14 нояб. 2024
Источник: nvd
CVSS3: 7.5
EPSS Низкий

Описание

Valid Host header field can cause Apache Traffic Server to crash on some platforms.

This issue affects Apache Traffic Server: from 9.2.0 through 9.2.5.

Users are recommended to upgrade to version 9.2.6, which fixes the issue, or 10.0.2, which does not have the issue.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:apache:traffic_server:*:-:*:*:*:*:*:*
Версия от 9.0.0 (включая) до 9.2.6 (исключая)

EPSS

Процентиль: 59%
0.00381
Низкий

7.5 High

CVSS3

Дефекты

CWE-20
CWE-120

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 1 года назад

Valid Host header field can cause Apache Traffic Server to crash on some platforms. This issue affects Apache Traffic Server: from 9.2.0 through 9.2.5. Users are recommended to upgrade to version 9.2.6, which fixes the issue, or 10.0.2, which does not have the issue.

CVSS3: 7.5
debian
около 1 года назад

Valid Host header field can cause Apache Traffic Server to crash on so ...

CVSS3: 7.5
github
около 1 года назад

Valid Host header field can cause Apache Traffic Server to crash on some platforms. This issue affects Apache Traffic Server: from 9.2.0 through 9.2.5. Users are recommended to upgrade to version 9.2.6, which fixes the issue, or 10.0.2, which does not have the issue.

CVSS3: 7.5
fstec
около 1 года назад

Уязвимость веб-сервера Apache Traffic Server, связанная с недостаточной проверкой входных данных, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 59%
0.00381
Низкий

7.5 High

CVSS3

Дефекты

CWE-20
CWE-120