Описание
Squid 3.4.4 through 3.4.11 and 3.5.0.1 through 3.5.1, when Digest authentication is used, allow remote authenticated users to retain access by leveraging a stale nonce, aka "Nonce replay vulnerability."
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 3.3.8-1ubuntu16 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected] |
| precise | not-affected | |
| trusty | not-affected | |
| trusty/esm | DNE | trusty was not-affected |
| upstream | released | 3.5.2 |
| vivid | not-affected | |
| wily | not-affected |
Показывать по
4 Medium
CVSS2
Связанные уязвимости
Squid 3.4.4 through 3.4.11 and 3.5.0.1 through 3.5.1, when Digest authentication is used, allow remote authenticated users to retain access by leveraging a stale nonce, aka "Nonce replay vulnerability."
Squid 3.4.4 through 3.4.11 and 3.5.0.1 through 3.5.1, when Digest authentication is used, allow remote authenticated users to retain access by leveraging a stale nonce, aka "Nonce replay vulnerability."
Squid 3.4.4 through 3.4.11 and 3.5.0.1 through 3.5.1, when Digest auth ...
4 Medium
CVSS2