Page 2 of 8 results (0.005 seconds)

CVSS: 10.0EPSS: 0%CPEs: 2EXPL: 0

Unspecified vulnerability in the HTTP/2 experimental feature in Apache Traffic Server before 5.3.x before 5.3.2 has unknown impact and attack vectors, a different vulnerability than CVE-2015-5168. Existe una vulnerabilidad no especificada en la característica experimental HTTP/2 en Apache Traffic Server, en versiones anteriores a la 5.3.2 que tiene un impacto y vectores de ataque desconocidos. Esta vulnerabilidad es diferente de CVE-2015-5168 • http://mail-archives.us.apache.org/mod_mbox/www-announce/201509.mbox/%3CCABF6JR2j5vesvnjbm6sDPB_zAGj3kNgzzHEpLUh6dWG6t8mC2w%40mail.gmail.com%3E •

CVSS: 7.5EPSS: 0%CPEs: 1EXPL: 0

Apache Traffic Server before 6.2.1 generates a coredump when there is a mismatch between content length and chunked encoding. Apache Traffic Server en versiones anteriores a 6.2.1 genera un volcado de memoria cuando hay una falta de coincidencia entre la longitud del contenido y la codificación en fragmentos. • http://www.securityfocus.com/bid/97949 http://www.securitytracker.com/id/1038275 https://issues.apache.org/jira/browse/TS-4819 • CWE-20: Improper Input Validation •

CVSS: 7.2EPSS: 0%CPEs: 9EXPL: 1

Buffer overflow in traffic_manager for Inktomi Traffic Server 4.0.18 through 5.2.2, Traffic Edge 1.1.2 and 1.5.0, and Media-IXT 3.0.4 allows local users to gain root privileges via a long -path argument. • https://www.exploit-db.com/exploits/21580 http://archives.neohapsis.com/archives/bugtraq/2002-07/0023.html http://support.inktomi.com/kb/070202-003.html http://www.iss.net/security_center/static/9465.php http://www.securityfocus.com/bid/5098 •