Security Advisory

CVE-2023-39456

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2023-10-17 06:58:17
Last updated 2025-06-12 15:10:53
Assigner apache
State PUBLISHED

Description

Improper Input Validation vulnerability in Apache Traffic Server with malformed HTTP/2 frames.This issue affects Apache Traffic Server: from 9.0.0 through 9.2.2. Users are recommended to upgrade to version 9.2.3, which fixes the issue.