What is CVE-2026-58177?
CVE-2026-58177 involves out-of-bounds writes, path traversal, and use-after-free vulnerabilities in the Apache Traffic Server Cripts framework. It affects versions 10.0.0 through 10.1.3 and could allow remote code execution. Users are recommended to upgrade to version 10.1.4 to fix the issue.
Azərbaycanca: CVE-2026-58177 Apache Traffic Server-in Cripts framework-ində out-of-bounds writes, path traversal və use-after-free zəiflikləridir. Bu, 10.0.0-dan 10.1.3-ə qədər versiyaları olan serverlərə təsir edir və uzaqdan kod icrasına səbəb ola bilər. İstifadəçilərə problemi həll edən 10.1.4 versiyasına yeniləmə tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-787; shared vendor: Apache
FAQ2
Which versions of Apache Traffic Server are affected by CVE-2026-58177?
This vulnerability affects versions 10.0.0 through 10.1.3.
What upgrade is recommended to address CVE-2026-58177?
Users are recommended to upgrade to version 10.1.4, which fixes the issue.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.