5
CVSSv2

CVE-2009-2621

Published: 28/07/2009 Updated: 12/08/2009
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

Squid 3.0 up to and including 3.0.STABLE16 and 3.1 up to and including 3.1.0.11 does not properly enforce "buffer limits and related bound checks," which allows remote malicious users to cause a denial of service via (1) an incomplete request or (2) a request with a large header size, related to (a) HttpMsg.cc and (b) client_side.cc.

Vulnerable Product Search on Vulmon Subscribe to Product

squid-cache squid 3.0

squid-cache squid 3.1

squid-cache squid 3.1.0.1

squid-cache squid 3.1.0.2

squid-cache squid 3.1.0.3

squid-cache squid 3.1.0.4