CVE-2022-32749Improper Check for Unusual or Exceptional Conditions in Apache Traffic Server

Severity
7.5HIGHNVD
EPSS
6.6%
top 8.84%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 19

Description

Improper Check for Unusual or Exceptional Conditions vulnerability handling requests in Apache Traffic Server allows an attacker to crash the server under certain conditions. This issue affects Apache Traffic Server: from 8.0.0 through 9.1.3.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:HExploitability: 3.9 | Impact: 3.6

Affected Packages2 packages

NVDapache/traffic_server8.0.08.1.6+1

🔴Vulnerability Details

3
CVEList
Apache Traffic Server: Improperly handled requests can cause crashes in specific plugins2022-12-19
OSV
CVE-2022-32749: Improper Check for Unusual or Exceptional Conditions vulnerability handling requests in Apache Traffic Server allows an attacker to crash the server u2022-12-19
GHSA
GHSA-mgj6-q8hw-4xh2: Improper Check for Unusual or Exceptional Conditions vulnerability handling requests in Apache Traffic Server allows an attacker to crash the server u2022-12-19

📋Vendor Advisories

1
Debian
CVE-2022-32749: trafficserver - Improper Check for Unusual or Exceptional Conditions vulnerability handling requ...2022
CVE-2022-32749 — Apache Traffic Server vulnerability | cvebase