imPC@ndo IT

Tracker / CVE-2017-5660

CVE-2017-5660

High 8.6

There is a vulnerability in Apache Traffic Server (ATS) 6.2.0 and prior and 7.0.0 and prior with the Host header and line folding. This can have issues when interacting with upstream proxies and the wrong host being used.

Affected products and versions

apache traffic_server
apache traffic_server · … → 6.2.0
debian debian_linux

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References