High severity7.5NVD Advisory· Published Aug 10, 2022· Updated Jun 17, 2026
CVE-2021-37150
CVE-2021-37150
Description
Improper Input Validation vulnerability in header parsing of Apache Traffic Server allows an attacker to request secure resources. This issue affects Apache Traffic Server 8.0.0 to 9.1.2.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
7cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:*range: >=8.0.0,<=8.1.4
- (no CPE)range: 8.0.0 - 9.1.2
- (no CPE)range: 8.0.0 to 9.1.2
cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
- cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
5- lists.apache.org/thread/rc64lwbdgrkv674koc3zl1sljr9vwg21nvdMailing ListVendor Advisory
- lists.debian.org/debian-lts-announce/2023/01/msg00019.htmlnvdMailing ListThird Party Advisory
- www.debian.org/security/2022/dsa-5206nvdThird Party Advisory
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/CJ67IWD5PRJUOIYIDJRUG3UMS2UF4X4J/nvd
- lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZCSBQBYPOZSWS5LCOAQ6LJLRLXFIAW5A/nvd
News mentions
0No linked articles in our index yet.