Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-46847

Опубликовано: 03 нояб. 2023
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS3: 8.6

Описание

Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is configured to accept HTTP Digest Authentication.

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

released

6.1-2ubuntu2
esm-infra/focal

not-affected

4.10-1ubuntu1.8
focal

released

4.10-1ubuntu1.8
jammy

released

5.7-0ubuntu0.22.04.2
lunar

released

5.7-1ubuntu3.1
mantic

released

6.1-2ubuntu1.1
trusty

ignored

end of standard support
upstream

released

6.4
xenial

ignored

end of standard support

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

DNE

esm-infra/bionic

released

3.5.27-1ubuntu1.14+esm1
esm-infra/focal

DNE

esm-infra/xenial

released

3.5.12-1ubuntu7.16+esm2
focal

DNE

jammy

DNE

lunar

DNE

mantic

DNE

trusty

ignored

end of standard support

Показывать по

EPSS

Процентиль: 98%
0.50113
Средний

8.6 High

CVSS3

Связанные уязвимости

CVSS3: 8.6
redhat
больше 1 года назад

Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is configured to accept HTTP Digest Authentication.

CVSS3: 8.6
nvd
больше 1 года назад

Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is configured to accept HTTP Digest Authentication.

CVSS3: 8.6
debian
больше 1 года назад

Squid is vulnerable to a Denial of Service, where a remote attacker c ...

oracle-oval
больше 1 года назад

ELSA-2023-6884: squid security update (CRITICAL)

oracle-oval
больше 1 года назад

ELSA-2023-6882: squid34 security update (CRITICAL)

EPSS

Процентиль: 98%
0.50113
Средний

8.6 High

CVSS3

Уязвимость CVE-2023-46847