Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to a Buffer Overread bug Squid is vulnerable to a Denial of Service attack against Squid HTTP Message processing. This bug is fixed by Squid version 6.5. Users are advised to upgrade. There are no known workarounds for this vulnerability.
{
"cwe_ids": [
"CWE-126"
]
}[
{
"id": "CVE-2023-49285-0321cf26",
"source": "https://github.com/squid-cache/squid/commit/deee944f9a12c9fd399ce52f3e2526bb573a9470",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Function",
"digest": {
"function_hash": "164979830842734690722875744928057871569",
"length": 314.0
},
"target": {
"function": "make_month",
"file": "src/time/rfc1123.cc"
}
},
{
"id": "CVE-2023-49285-47e2fa4b",
"source": "https://github.com/squid-cache/squid/commit/77b3fb4df0f126784d5fd4967c28ed40eb8d521b",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"254665393534594738508084282088153151738",
"293766430760506514691035815790752071906",
"52130077338185614748797763944600405352",
"233931196911573896403460085548435094738",
"145985704875151314138039684014417983553"
]
},
"target": {
"file": "lib/rfc1123.c"
}
},
{
"id": "CVE-2023-49285-9f7ff880",
"source": "https://github.com/squid-cache/squid/commit/77b3fb4df0f126784d5fd4967c28ed40eb8d521b",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Function",
"digest": {
"function_hash": "164979830842734690722875744928057871569",
"length": 314.0
},
"target": {
"function": "make_month",
"file": "lib/rfc1123.c"
}
},
{
"id": "CVE-2023-49285-a2c08ad6",
"source": "https://github.com/squid-cache/squid/commit/deee944f9a12c9fd399ce52f3e2526bb573a9470",
"deprecated": false,
"signature_version": "v1",
"signature_type": "Line",
"digest": {
"threshold": 0.9,
"line_hashes": [
"254665393534594738508084282088153151738",
"293766430760506514691035815790752071906",
"52130077338185614748797763944600405352",
"233931196911573896403460085548435094738",
"145985704875151314138039684014417983553"
]
},
"target": {
"file": "src/time/rfc1123.cc"
}
}
]