5
CVSSv2

CVE-2013-4123

Published: 16/09/2013 Updated: 30/10/2018
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

client_side_request.cc in Squid 3.2.x prior to 3.2.13 and 3.3.x prior to 3.3.8 allows remote malicious users to cause a denial of service via a crafted port number in a HTTP Host header.

Vulnerable Product Search on Vulmon Subscribe to Product

squid-cache squid 3.3.7

squid-cache squid 3.3.0

squid-cache squid 3.3.0.2

squid-cache squid 3.3.0.3

squid-cache squid 3.3.1

squid-cache squid 3.3.3

squid-cache squid 3.3.5

squid-cache squid 3.3.6

squid-cache squid 3.3.2

squid-cache squid 3.3.4

opensuse opensuse 12.3

squid-cache squid 3.2.9

squid-cache squid 3.2.10

squid-cache squid 3.2.11

squid-cache squid 3.2.5

squid-cache squid 3.2.7

squid-cache squid 3.2.0.10

squid-cache squid 3.2.0.12

squid-cache squid 3.2.0.3

squid-cache squid 3.2.0.5

squid-cache squid 3.2.1

squid-cache squid 3.2.3

squid-cache squid 3.2.12

squid-cache squid 3.2.0.6

squid-cache squid 3.2.0.7

squid-cache squid 3.2.0.8

squid-cache squid 3.2.0.9

squid-cache squid 3.2.0.16

squid-cache squid 3.2.0.17

squid-cache squid 3.2.0.18

squid-cache squid 3.2.0.19

squid-cache squid 3.2.0.13

squid-cache squid 3.2.0.14

squid-cache squid 3.2.6

squid-cache squid 3.2.8

squid-cache squid 3.2.0.1

squid-cache squid 3.2.0.11

squid-cache squid 3.2.0.15

squid-cache squid 3.2.0.2

squid-cache squid 3.2.0.4

squid-cache squid 3.2.2

squid-cache squid 3.2.4

Vendor Advisories

Debian Bug report logs - #716743 squid3: CVE-2013-4115 CVE-2013-4123 Package: squid3; Maintainer for squid3 is Luigi Gangitano <luigi@debianorg>; Source for squid3 is src:squid (PTS, buildd, popcon) Reported by: Moritz Muehlenhoff <jmm@inutilorg> Date: Fri, 12 Jul 2013 06:36:02 UTC Severity: grave Tags: jessie, pa ...
client_side_requestcc in Squid 32x before 3213 and 33x before 338 allows remote attackers to cause a denial of service via a crafted port number in a HTTP Host header ...

Exploits

#Squid Crash PoC #Copyright (C) Kingcope 2013 #tested against squid-335 #this seems to be the patch for the vulnerability: #wwwsquid-cacheorg/Versions/v3/33/squid-338patch #The squid-cache service will respawn, looks like a kind of assert exception: #2013/07/15 20:48:36 kid1| Closing HTTP port 0000:3128 #2013/07/15 20:48:36 kid1| ...