Buffer Copy without Checking Size of Input ('Classic Buffer Overflow') vulnerability in the stats-over-http plugin of Apache Traffic Server allows an attacker to overwrite memory. This issue affects Apache Traffic Server 9.1.0.
{ "binaries": [ { "binary_version": "9.2.3+ds-1+deb12u1build4", "binary_name": "trafficserver" }, { "binary_version": "9.2.3+ds-1+deb12u1build4", "binary_name": "trafficserver-dev" }, { "binary_version": "9.2.3+ds-1+deb12u1build4", "binary_name": "trafficserver-experimental-plugins" } ] }
{ "binaries": [ { "binary_version": "8.0.5+ds-3ubuntu0.1~esm1", "binary_name": "trafficserver" }, { "binary_version": "8.0.5+ds-3ubuntu0.1~esm1", "binary_name": "trafficserver-dev" }, { "binary_version": "8.0.5+ds-3ubuntu0.1~esm1", "binary_name": "trafficserver-experimental-plugins" } ] }