Aller au contenu

Fiche vulnérabilité

CVE-2023-49286 : faille élevée squid-cache squid (CVSS 8.6)

Description

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Incorrect Check of Function Return Value bug Squid is vulnerable to a Denial of Service attack against its Helper process management. This bug is fixed by Squid version 6.5. Users are advised to upgrade. There are no known workarounds for this vulnerability.

En bref

Sévérité
Élevée (CVSS 8.6)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
Exploitation active
Non signalée par la CISA
Publication
4 déc. 2023
Dernière mise à jour
13 févr. 2025

Produits concernés

  • squid-cache squid

Références

Rechercher une autre vulnérabilité dans la base CVE