High severity7.5NVD Advisory· Published Nov 3, 2021· Updated Jun 17, 2026
CVE-2021-41585
CVE-2021-41585
Description
Improper Input Validation vulnerability in accepting socket connections in Apache Traffic Server allows an attacker to make the server stop accepting new connections. This issue affects Apache Traffic Server 5.0.0 to 9.1.0.
Affected products
3cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:*range: >=8.0.0,<=8.1.2
- (no CPE)range: 5.0.0 - 9.1.0
- (no CPE)range: 7.0.0 to 9.1.0
Patches
Vulnerability mechanics
References
1- lists.apache.org/thread/k01797hyncx53659wr3o72s5cvkc3164nvdMailing ListPatchVendor Advisory
News mentions
0No linked articles in our index yet.