#VU107418 Resource exhaustion in Apache Traffic Server - CVE-2024-56202
Published: April 14, 2025
Apache Traffic Server
Apache Foundation
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to application unreasonable retain resources when handling the Expect HTTP header field. A remote attacker can send specially crafted HTTP requests to the server, trigger resource exhaustion and perform a denial of service (DoS) attack.