The clientProcessRequest() function in src/client_side.c in Squid 2.6 prior to 2.6.STABLE12 allows remote malicious users to cause a denial of service (daemon crash) via crafted TRACE requests that trigger an assertion error.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
squid squid 2.6.stable1 |
||
squid squid 2.6.stable10 |
||
squid squid 2.6.stable7 |
||
squid squid 2.6.stable8 |
||
squid squid 2.6.stable11 |
||
squid squid 2.6.stable2 |
||
squid squid 2.6.stable9 |
||
squid squid 2.6.stable5 |
||
squid squid 2.6.stable6 |
||
squid squid 2.6.stable3 |
||
squid squid 2.6.stable4 |