CVE-2021-38161

Improper Authentication vulnerability in TLS origin verification of Apache Traffic Server allows for man in the middle attacks. This issue affects Apache Traffic Server 8.0.0 to 8.0.8.
References
Link Resource
https://lists.apache.org/thread/k01797hyncx53659wr3o72s5cvkc3164 Mailing List Patch Vendor Advisory
https://www.debian.org/security/2022/dsa-5153 Third Party Advisory
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:apache:traffic_server:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:11.0:*:*:*:*:*:*:*

Information

Published : 2021-11-03 09:15

Updated : 2022-10-25 08:30


NVD link : CVE-2021-38161

Mitre link : CVE-2021-38161


JSON object : View

CWE
CWE-287

Improper Authentication

Advertisement

dedicated server usa

Products Affected

debian

  • debian_linux

apache

  • traffic_server