← back
CVE-2021-32566

Specific sequence of HTTP/2 frames can cause ATS to crash

EPSS 2.5%CWE-20
Improper Input Validation vulnerability in HTTP/2 of Apache Traffic Server allows an attacker to DOS the server. This issue affects Apache Traffic Server 7.0.0 to 7.1.12, 8.0.0 to 8.1.1, 9.0.0 to 9.0.1.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →