CVE-2022-32749
Last modified
CVE-2022-32749 is a high-severity vulnerability rated 7.5/10 on the CVSS scale. Improper Check for Unusual or Exceptional Conditions vulnerability handling requests in Apache Traffic Server allows an attacker to crash the server under certain conditions. This issue affects Apache Traffic Server: from 8.0.0 through 9.1.3. . EPSS estimates a 1.30% chance of exploitation in the next 30 days.
Description
Improper Check for Unusual or Exceptional Conditions vulnerability handling requests in Apache Traffic Server allows an attacker to crash the server under certain conditions. This issue affects Apache Traffic Server: from 8.0.0 through 9.1.3.
Metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Apache | Traffic Server | >= 8.0.0, < 8.1.6 |
| Apache | Traffic Server | >= 9.0.0, < 9.1.4 |
References
- https://lists.apache.org/thread/mrj2lg4s0hf027rk7gz8t7hbn9xpfg02Mailing List, Vendor Advisory
- https://lists.apache.org/thread/mrj2lg4s0hf027rk7gz8t7hbn9xpfg02Mailing List, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2022-32749?
How severe is CVE-2022-32749?
How do I fix CVE-2022-32749?
Are you affected by CVE-2022-32749?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
