cbcvebase.
CVE-2022-32749
published 2022-12-19

CVE-2022-32749: Improper Check for Unusual or Exceptional Conditions vulnerability handling requests in Apache Traffic Server allows an attacker to crash the server under…

high7.5CVSS 3.1
AVNACLPRNUINSUCNINAH
Improper Check for Unusual or Exceptional Conditions vulnerability handling requests in Apache Traffic Server allows an attacker to crash the server under certain conditions. This issue affects Apache Traffic Server: from 8.0.0 through 9.1.3.

Affected

4 ranges
VendorProductVersion rangeFixed in
apachetraffic_server>= 8.0.0 < 8.1.68.1.6
apachetraffic_server>= 9.0.0 < 9.1.49.1.4
apache_software_foundationapache_traffic_server8.0.0 – 9.1.3
debiantrafficserver< trafficserver 9.1.4+ds-1 (bookworm)trafficserver 9.1.4+ds-1 (bookworm)

CVSS provenance

nvdv3.17.5HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
osv7.5HIGH