![]() |
Startseite ▼ Bookkeeping
Online ▼ Sicherheits
Überprüfungs ▼
Verwaltetes
DNS ▼
Info
Bestellen/Erneuern
FAQ
AUP
Dynamic DNS Clients
Domaine konfigurieren Dyanmic DNS Update Password Netzwerk
Überwachung ▼
Enterprise
Erweiterte
Standard
Gratis Test
FAQ
Preis/Funktionszusammenfassung
Bestellen
Beispiele
Konfigurieren/Status Alarm Profile | ||
Test Kennung: | 1.3.6.1.4.1.25623.1.0.100705 |
Kategorie: | Web Servers |
Titel: | Squid Multiple DoS Vulnerabilities (GHSA-543m-w2m2-g255, SQUID-2023:2) |
Zusammenfassung: | Squid is prone to multiple denial of service (DoS); vulnerabilities. |
Beschreibung: | Summary: Squid is prone to multiple denial of service (DoS) vulnerabilities. Vulnerability Insight: The following flaws exist: - Due to an Improper Handling of Structural Elements bug Squid is vulnerable to a Denial of Service attack against HTTP and HTTPS clients. - Due to an Incomplete Filtering of Special Elements bug Squid is vulnerable to a Denial of Service attack against HTTP and HTTPS clients. These flaws were part of the 'Squid Caching Proxy Security Audit: 55 vulnerabilities and 35 0days' publication in October 2023 and filed as 'Cache Poisoning by Large Stored Response Headers (With Bonus XSS)'. Affected Software/OS: Squid versions prior to 6.4. Solution: Update to version 6.4 or later. CVSS Score: 7.8 CVSS Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C |
Querverweis: |
Common Vulnerability Exposure (CVE) ID: CVE-2023-5824 RHBZ#2245914 https://bugzilla.redhat.com/show_bug.cgi?id=2245914 RHSA-2023:7465 https://access.redhat.com/errata/RHSA-2023:7465 RHSA-2023:7668 https://access.redhat.com/errata/RHSA-2023:7668 RHSA-2024:0072 https://access.redhat.com/errata/RHSA-2024:0072 RHSA-2024:0397 https://access.redhat.com/errata/RHSA-2024:0397 RHSA-2024:0771 https://access.redhat.com/errata/RHSA-2024:0771 RHSA-2024:0772 https://access.redhat.com/errata/RHSA-2024:0772 RHSA-2024:0773 https://access.redhat.com/errata/RHSA-2024:0773 RHSA-2024:1153 https://access.redhat.com/errata/RHSA-2024:1153 https://access.redhat.com/security/cve/CVE-2023-5824 https://github.com/squid-cache/squid/security/advisories/GHSA-543m-w2m2-g255 https://security.netapp.com/advisory/ntap-20231130-0003/ |
Copyright | Copyright (C) 2023 Greenbone AG |
Dies ist nur einer von 145615 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus. Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten. |