Invalid values in the Content-Length header sent to Apache Traffic Server allows an attacker to smuggle requests. This issue affects Apache Traffic Server 7.0.0 to 7.1.12, 8.0.0 to 8.1.1, 9.0.0 to 9.0.1.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: apache

Published: 2021-06-29T11:45:20

Updated: 2024-08-03T23:25:30.615Z

Reserved: 2021-05-11T00:00:00

Link: CVE-2021-32565

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-06-29T12:15:08.573

Modified: 2021-09-20T18:52:38.810

Link: CVE-2021-32565

cve-icon Redhat

No data.