CVE-2017-5659: Input Validation
Published Apr 17, 2017
·Updated
Apache Traffic Server before 6.2.1 generates a coredump when there is a mismatch between content length and chunked encoding.
Affected Software
1 affected component
Apache Traffic Server<=6.2.0
Remediation
Patch Available
Event History
Apr 17, 2017
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
DescriptionWeakness
Data Sourced
via NVD·06:59 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2017-5659?
CVE-2017-5659 is considered a high-severity vulnerability as it can result in application crashes.
2
How do I fix CVE-2017-5659?
To fix CVE-2017-5659, upgrade Apache Traffic Server to version 6.2.1 or later.
3
What systems are affected by CVE-2017-5659?
CVE-2017-5659 affects Apache Traffic Server versions prior to 6.2.1.
4
Can CVE-2017-5659 lead to data loss?
CVE-2017-5659 can potentially lead to data loss due to application crashes caused by the vulnerability.
5
Is CVE-2017-5659 a remote code execution vulnerability?
No, CVE-2017-5659 is not a remote code execution vulnerability; it causes a coredump during content processing.