6.5
CVSSv3

CVE-2021-46784

Published: 17/07/2022 Updated: 22/10/2023
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 0

Vulnerability Summary

In Squid 3.x up to and including 3.5.28, 4.x up to and including 4.17, and 5.x prior to 5.6, due to improper buffer management, a Denial of Service can occur when processing long Gopher server responses.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

squid-cache squid

debian debian linux 10.0

debian debian linux 11.0

debian debian linux 12.0

Vendor Advisories

Multiple security issues were discovered in the Squid proxy caching server: CVE-2021-28116 Amos Jeffries discovered an information leak if WCCPv2 is enabled CVE-2021-46784 Joshua Rogers discovered that an error in parsing Gopher server responses may result in denial of service For the oldstable distribution (buster), these problems ha ...
Synopsis Important: squid:4 security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for the squid:4 module is now available for Red Hat Enterprise Linux 81 Update Services for SAP SolutionsRed Hat Prod ...
Synopsis Important: squid:4 security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for the squid:4 module is now available for Red Hat Enterprise Linux 84 Extended Update SupportRed Hat Product Securi ...
Synopsis Important: squid security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for squid is now available for Red Hat Enterprise Linux 9Red Hat Product Security has rated this update as having a secu ...
Synopsis Important: squid:4 security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for the squid:4 module is now available for Red Hat Enterprise Linux 8Red Hat Product Security has rated this update a ...
Synopsis Important: squid:4 security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for the squid:4 module is now available for Red Hat Enterprise Linux 82 Extended Update SupportRed Hat Product Securi ...
Synopsis Important: squid security update Type/Severity Security Advisory: Important Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for squid is now available for Red Hat Enterprise Linux 7Red Hat Product Security has rated this update as having a secu ...
Synopsis Moderate: OpenShift Container Platform 311784 security update Type/Severity Security Advisory: Moderate Topic Red Hat OpenShift Container Platform release 311784 is now available withupdates to packages and images that fix several bugs and add enhancementsThis release includes a security update for Red Hat OpenShift Container Pl ...
In Squid 3x through 3528, 4x through 417, and 5x before 56, due to improper buffer management, a Denial of Service can occur when processing long Gopher server responses (CVE-2021-46784) A flaw was found in Squid An incorrect integer overflow protection in the Squid SSPI and SMB authentication helpers is vulnerable to a buffer overflow att ...
In Squid 3x through 3528, 4x through 417, and 5x before 56, due to improper buffer management, a Denial of Service can occur when processing long Gopher server responses (CVE-2021-46784) ...
In Squid 3x through 3528, 4x through 417, and 5x before 56, due to improper buffer management, a Denial of Service can occur when processing long Gopher server responses (CVE-2021-46784) A flaw was found in Squid An incorrect integer overflow protection in the Squid SSPI and SMB authentication helpers is vulnerable to a buffer overflow att ...
A vulnerability was found in squid (Web proxy cache server) This issue occurs due to improper buffer management while processing Gopher server responses This flaw leads to a remote denial of service or a crash if it receives specially crafted network traffic, either by mistake or a malicious actor ...