CVE-2022-37392Improper Check for Unusual or Exceptional Conditions in Apache Traffic Server

Severity
5.3MEDIUMNVD
EPSS
3.0%
top 13.41%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedDec 19

Description

Improper Check for Unusual or Exceptional Conditions vulnerability in handling the requests to Apache Traffic Server. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:NExploitability: 3.9 | Impact: 1.4

Affected Packages2 packages

NVDapache/traffic_server8.0.08.1.6+1

🔴Vulnerability Details

3
OSV
CVE-2022-37392: Improper Check for Unusual or Exceptional Conditions vulnerability in handling the requests to Apache Traffic Server2022-12-19
GHSA
GHSA-76q2-v43x-gmjh: Improper Check for Unusual or Exceptional Conditions vulnerability in handling the requests to Apache Traffic Server2022-12-19
CVEList
Apache Traffic Server: Improperly reading the client requests2022-12-19

📋Vendor Advisories

1
Debian
CVE-2022-37392: trafficserver - Improper Check for Unusual or Exceptional Conditions vulnerability in handling t...2022