Squid 3.0 up to and including 3.0.STABLE16 and 3.1 up to and including 3.1.0.11 does not properly enforce "buffer limits and related bound checks," which allows remote malicious users to cause a denial of service via (1) an incomplete request or (2) a request with a large header size, related to (a) HttpMsg.cc and (b) client_side.cc.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
squid-cache squid 3.0 |
||
squid-cache squid 3.1 |
||
squid-cache squid 3.1.0.1 |
||
squid-cache squid 3.1.0.2 |
||
squid-cache squid 3.1.0.3 |
||
squid-cache squid 3.1.0.4 |