Aller au contenu

Fiche vulnérabilité

CVE-2026-58179 : faille critique apache traffic server (CVSS 9.8)

Description

The Apache Traffic Server regex_remap plugin overflows the stack and integers from substitution input. This issue affects Apache Traffic Server: from 8.0.0 through 8.1.9, from 9.0.0 through 9.2.14, from 10.0.0 through 10.1.3. Users are recommended to upgrade to version 9.2.15 or 10.1.4, which fix the issue.

En bref

Sévérité
Critique (CVSS 9.8)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitation active
Non signalée par la CISA
Publication
29 juil. 2026
Dernière mise à jour
31 juil. 2026

Produits concernés

  • apache traffic server

Références

Rechercher une autre vulnérabilité dans la base CVE