What is CVE-2026-58158?
CVE-2026-58158 is a vulnerability in Apache Traffic Server where mishandling of PROXY protocol input leads to port truncation and a stack overflow. It affects versions from 8.0.0 through 10.1.3. Users are advised to upgrade to version 9.2.15 or 10.1.4.
Azərbaycanca: CVE-2026-58158 Apache Traffic Server-in PROXY protokol girişlərini düzgün işləməməsi nəticəsində portların kəsilməsi və stack overflow zəifliyidir. Bu, 8.0.0-dən 10.1.3-ə qədər olan versiyaları təsir edir. İstifadəçilərə 9.2.15 və ya 10.1.4 versiyalarına yüksəlmələri tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-119; shared vendor: Apache
FAQ2
Which versions of Apache Traffic Server are affected by CVE-2026-58158?
The vulnerability affects versions from 8.0.0 through 10.1.3.
Which versions are recommended to upgrade to in order to mitigate CVE-2026-58158?
Users are advised to upgrade to version 9.2.15 or 10.1.4.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.