Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Apache Traffic Server (s3_auth plugin exposes AWSAccessKeyId).This issue affects Apache Traffic Server: from 8.0.0 through 8.1.8, from 9.0.0 through 9.2.2. Users are recommended to upgrade to version 8.1.9 or 9.2.3, which fixes the issue. Reference: - https://www.cve.org/CVERecord?id=CVE-2023-41752 - https://lists.apache.org/thread/5py8h42mxfsn8l1wy6o41xwhsjlsd87q
Created trafficserver tracking bugs for this issue: Affects: epel-all [bug 2245141] Affects: fedora-all [bug 2245142]