Improper Input Validation in Apache Traffic Server by Apache
CVE-2024-38311
Key Information:
- Vendor
Apache
- Status
- Vendor
- CVE Published:
- 6 March 2025
Badges
What is CVE-2024-38311?
An improper input validation vulnerability exists in Apache Traffic Server, affecting versions from 8.0.0 to 8.1.11, 9.0.0 to 9.2.8, and 10.0.0 to 10.0.3. This vulnerability could allow an attacker to manipulate input, potentially leading to unauthorized operations. Users are strongly advised to upgrade to Apache Traffic Server versions 9.2.9 or 10.0.4, which address the issue and bolster security.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
Affected Version(s)
Apache Traffic Server 8.0.0 <= 8.1.11
Apache Traffic Server 9.0.0 <= 9.2.8
Apache Traffic Server 10.0.0 <= 10.0.3
News Articles
References
CVSS V3.1
Timeline
- ๐พ
Exploit known to exist
- ๐ฐ
First article discovered by GBHackers News
Vulnerability published
Vulnerability Reserved