![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
Test ID: | 1.3.6.1.4.1.25623.1.0.150942 |
Category: | Web Servers |
Title: | Squid DoS Vulnerability (GHSA-jm7h-w5q5-jpq9, SQUID-2020:13) |
Summary: | Squid is prone to a denial of service (DoS) vulnerability. |
Description: | Summary: Squid is prone to a denial of service (DoS) vulnerability. Vulnerability Insight: This problem allows a remote gopher: server to trigger a buffer overflow by delivering large gopher protocol responses. On most operating systems with memory protection this will halt Squid service immediately, causing a denial of service to all Squid clients. The gopher protocol is always available and enabled in Squid prior to Squid 6.0.1. Affected Software/OS: Squid prior to version 6.0.1. Solution: Update to version 6.0.1 or later. As a workaround reject all gopher URL requests. Please see the referenced vendor advisory for more information. CVSS Score: 7.8 CVSS Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C |
Copyright | Copyright (C) 2023 Greenbone AG |
This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit. To run a free test of this vulnerability against your system, register below. |