An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. An integer overflow problem allows a remote server to achieve Denial of Service when delivering responses to HTTP Range requests. The issue trigger is a header that can be expected to exist in HTTP traffic without any malicious intent.
[
{
"events": [
{
"introduced": "3.0"
},
{
"fixed": "4.15"
}
]
},
{
"events": [
{
"introduced": "5.0"
},
{
"fixed": "5.0.6"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.5.stable2"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.5.stable3"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.5.stable4"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.5.stable5"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.5.stable6"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.5.stable7"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.5.stable8"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.5.stable9"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.5.stable10"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.5.stable11"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.5.stable12"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.5.stable13"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.5.stable14"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.6"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.7-NA"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.7-stable2"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.7-stable3"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.7-stable4"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.7-stable5"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.7-stable6"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.7-stable7"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.7-stable8"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "2.7-stable9"
}
]
},
{
"events": [
{
"introduced": "0"
},
{
"last_affected": "34"
}
]
}
]
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-31807.json"