发布时间: 2025年4月11日
修改时间: 2025年4月11日
Apache Traffic Server allows request smuggling if chunked messages are malformed. This issue affects Apache Traffic Server: from 9.2.0 through 9.2.9, from 10.0.0 through 10.0.4. Users are recommended to upgrade to version 9.2.10 or 10.0.5, which fixes the issue.
NVD | openEuler | |
---|---|---|
Confidentiality | High | |
Attack Vector | Network | |
CVSS评分 | N/A | 6.5 |
Attack Complexity | High | |
Privileges Required | None | |
Scope | Unchanged | |
Integrity | Low | |
User Interaction | None | |
Availability | None |
公告名 | 概要 | 发布时间 |
---|---|---|
KylinSec-SA-2025-2475 | trafficserver security update | 2025年5月1日 |
产品 | 包 | 状态 |
---|---|---|
V6 | trafficserver | Fixed |