CVE-2021-28651

Related Vulnerabilities: CVE-2021-28651  

An input validation flaw was found in Squid. This issue could allow a malicious server in collaboration with a trusted client to consume arbitrarily large amounts of memory on the server running Squid. The highest threat from this vulnerability is to system availability.

Description

An input validation flaw was found in Squid. This issue could allow a malicious server in collaboration with a trusted client to consume arbitrarily large amounts of memory on the server running Squid. The highest threat from this vulnerability is to system availability.

Additional Information

  • Bugzilla 1962243: CVE-2021-28651 squid: denial of service in URN processing
  • CWE-20->CWE-400: Improper Input Validation leads to Uncontrolled Resource Consumption
  • FAQ: Frequently asked questions about CVE-2021-28651