Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2016-4554

Опубликовано: 06 мая 2016
Источник: redhat
CVSS2: 4
EPSS Высокий

Описание

mime_header.cc in Squid before 3.5.18 allows remote attackers to bypass intended same-origin restrictions and possibly conduct cache-poisoning attacks via a crafted HTTP Host header, aka a "header smuggling" issue.

An input validation flaw was found in Squid's mime_get_header_field() function, which is used to search for headers within HTTP requests. An attacker could send an HTTP request from the client side with specially crafted header Host header that bypasses same-origin security protections, causing Squid operating as interception or reverse-proxy to contact the wrong origin server. It could also be used for cache poisoning for client not following RFC 7230.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5squidWill not fix
Red Hat Enterprise Linux 6squidFixedRHSA-2016:113831.05.2016
Red Hat Enterprise Linux 6squid34FixedRHSA-2016:114031.05.2016
Red Hat Enterprise Linux 7squidFixedRHSA-2016:113931.05.2016

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-20
https://bugzilla.redhat.com/show_bug.cgi?id=1334241squid: Header Smuggling issue in HTTP Request processing

EPSS

Процентиль: 99%
0.73388
Высокий

4 Medium

CVSS2

Связанные уязвимости

CVSS3: 8.6
ubuntu
больше 9 лет назад

mime_header.cc in Squid before 3.5.18 allows remote attackers to bypass intended same-origin restrictions and possibly conduct cache-poisoning attacks via a crafted HTTP Host header, aka a "header smuggling" issue.

CVSS3: 8.6
nvd
больше 9 лет назад

mime_header.cc in Squid before 3.5.18 allows remote attackers to bypass intended same-origin restrictions and possibly conduct cache-poisoning attacks via a crafted HTTP Host header, aka a "header smuggling" issue.

CVSS3: 8.6
debian
больше 9 лет назад

mime_header.cc in Squid before 3.5.18 allows remote attackers to bypas ...

CVSS3: 8.6
github
больше 3 лет назад

mime_header.cc in Squid before 3.5.18 allows remote attackers to bypass intended same-origin restrictions and possibly conduct cache-poisoning attacks via a crafted HTTP Host header, aka a "header smuggling" issue.

suse-cvrf
около 9 лет назад

Security update for squid

EPSS

Процентиль: 99%
0.73388
Высокий

4 Medium

CVSS2