Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-46784

Опубликовано: 17 июл. 2022
Источник: debian

Описание

In Squid 3.x through 3.5.28, 4.x through 4.17, and 5.x before 5.6, due to improper buffer management, a Denial of Service can occur when processing long Gopher server responses.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
squidfixed5.6-1package
squid3removedpackage

Примечания

  • https://github.com/squid-cache/squid/security/advisories/GHSA-f5cp-6rh3-284w

  • https://github.com/squid-cache/squid/commit/780c4ea1b4c9d2fb41f6962aa6ed73ae57f74b2b (v4)

  • Squid 5: http://www.squid-cache.org/Versions/v5/changesets/SQUID-2021_7.patch

  • https://megamansec.github.io/Squid-Security-Audit/gopher-assert.html

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 3 года назад

In Squid 3.x through 3.5.28, 4.x through 4.17, and 5.x before 5.6, due to improper buffer management, a Denial of Service can occur when processing long Gopher server responses.

CVSS3: 7.5
redhat
почти 3 года назад

In Squid 3.x through 3.5.28, 4.x through 4.17, and 5.x before 5.6, due to improper buffer management, a Denial of Service can occur when processing long Gopher server responses.

CVSS3: 6.5
nvd
почти 3 года назад

In Squid 3.x through 3.5.28, 4.x through 4.17, and 5.x before 5.6, due to improper buffer management, a Denial of Service can occur when processing long Gopher server responses.

suse-cvrf
почти 3 года назад

Security update for squid

redos
почти 3 года назад

Уязвимость Squid