High severity7.5NVD Advisory· Published Mar 23, 2022· Updated Jun 17, 2026
CVE-2021-44040
CVE-2021-44040
Description
Improper Input Validation vulnerability in request line parsing of Apache Traffic Server allows an attacker to send invalid requests. This issue affects Apache Traffic Server 8.0.0 to 8.1.3 and 9.0.0 to 9.1.1.
Affected products
5cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:*range: >=8.0.0,<=8.1.3
- (no CPE)range: 8.0.0-8.1.3, 9.0.0-9.1.1
- (no CPE)range: 8.0.0 to 8.1.3 and 9.0.0 to 9.1.1
Patches
Vulnerability mechanics
References
2- lists.apache.org/thread/zblwzcfs9ryhwjr89wz4osw55pxm6dx6nvdMailing ListVendor Advisory
- www.debian.org/security/2022/dsa-5153nvdThird Party Advisory
News mentions
0No linked articles in our index yet.