CVE-2024-56202

Expected Behavior Violation vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server: from 9.0.0 through 9.2.8, from 10.0.0 through 10.0.3. Users are recommended to upgrade to versions 9.2.9 or 10.0.4 or newer, which fixes the issue.
CVSS

No CVSS.

References
Link Resource
https://lists.apache.org/thread/btofzws2yqskk2n7f01r3l1819x01023 Mailing List Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:*
cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:*

History

29 Apr 2025, 16:41

Type Values Removed Values Added
First Time Apache traffic Server
Apache
CWE NVD-CWE-noinfo
References () https://lists.apache.org/thread/btofzws2yqskk2n7f01r3l1819x01023 - () https://lists.apache.org/thread/btofzws2yqskk2n7f01r3l1819x01023 - Mailing List, Vendor Advisory
CPE cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:*

06 Mar 2025, 16:15

Type Values Removed Values Added
CWE CWE-440

06 Mar 2025, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-03-06 11:15

Updated : 2025-04-29 16:41


NVD link : CVE-2024-56202

Mitre link : CVE-2024-56202


JSON object : View

Products Affected

apache

  • traffic_server