5
CVSSv2

CVE-2005-2917

Published: 30/09/2005 Updated: 11/10/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Squid 2.5.STABLE10 and previous versions, while performing NTLM authentication, does not properly handle certain request sequences, which allows malicious users to cause a denial of service (daemon restart).

Vulnerable Product Search on Vulmon Subscribe to Product

squid squid 2.5.9

squid squid

Vendor Advisories

Mike Diggins discovered a remote Denial of Service vulnerability in Squid Sending specially crafted NTML authentication requests to Squid caused the server to crash ...
Upstream developers of squid, the popular WWW proxy cache, have discovered that changes in the authentication scheme are not handled properly when given certain request sequences while NTLM authentication is in place, which may cause the daemon to restart The old stable distribution (woody) is not affected by this problem For the stable distribut ...