CVE-2021-27577
Summary
| CVE | CVE-2021-27577 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-06-29 12:15:00 UTC |
| Updated | 2021-09-20 18:52:00 UTC |
| Description | Incorrect handling of url fragment vulnerability of Apache Traffic Server allows an attacker to poison the cache. This issue affects Apache Traffic Server 7.0.0 to 7.1.12, 8.0.0 to 8.1.1, 9.0.0 to 9.0.1. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 178760 Debian Security Update for trafficserver (DSA 4957-1)
- 179535 Debian Security Update for trafficserver (CVE-2021-27577)
- 87522 Apache Traffic Server Multiple Vulnerabilities