Skip to main content

Expected Behavior Violation

CVE-2024-56202

Severity Medium
Score 4.3/10

Summary

Expected Behavior Violation vulnerability in Apache Traffic Server. This issue affects Apache Traffic Server versions 9.0.0-rc0 through 9.2.8 and 10.0.0-rc0 through 10.0.3. Users are recommended to upgrade to versions 9.2.9-rc0 or 10.0.4-rc0 or newer, which fixes the issue.

  • LOW
  • NETWORK
  • NONE
  • UNCHANGED
  • NONE
  • LOW
  • NONE
  • LOW

CWE-440 - Expected Behavior Violation

A feature, API, or function does not perform according to its specification.

Advisory Timeline

  • Published