Description
Apache Traffic Server leaks memory when handling HostDB SRV records. This issue affects Apache Traffic Server: from 8.0.0 through 8.1.9, from 9.0.0 through 9.2.14, from 10.0.0 through 10.1.3. Users are recommended to upgrade to version 9.2.15 or 10.1.4, which fix the issue.
Remediation
References
Related Vulnerabilities
Envoy Proxy Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2024-45806)
Next.js Use of Cache Containing Sensitive Information Vulnerability (CVE-2025-57752)
PHP NULL Pointer Dereference Vulnerability (CVE-2026-7262)
WordPress Plugin Wechat Broadcast Local/Remote File Inclusion (1.2.0)