A vulnerability was found in Apache Traffic Server up to 8.1.9/9.2.14/10.1.3 and classified as critical. Affected is an unknown function of the component DNS Answer Parsing. The manipulation results in out-of-bounds read.

This vulnerability was named CVE-2026-58160. The attack may be performed from remote. There is no available exploit.

It is suggested to upgrade the affected component.