A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall or crash of the worker process when a large header is retrieved from the disk cache, resulting in a denial of service.
The product does not handle or incorrectly handles an exceptional condition.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Squid | Squid-cache | * | 6.4 (excluding) |
Red Hat Enterprise Linux 8 | RedHat | squid:4-8090020231130092412.a75119d5 | * |
Red Hat Enterprise Linux 8.2 Advanced Update Support | RedHat | squid:4-8020020240122164331.4cda2c84 | * |
Red Hat Enterprise Linux 8.2 Telecommunications Update Service | RedHat | squid:4-8020020240122164331.4cda2c84 | * |
Red Hat Enterprise Linux 8.2 Update Services for SAP Solutions | RedHat | squid:4-8020020240122164331.4cda2c84 | * |
Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support | RedHat | squid:4-8040020240122165847.522a0ee4 | * |
Red Hat Enterprise Linux 8.4 Telecommunications Update Service | RedHat | squid:4-8040020240122165847.522a0ee4 | * |
Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions | RedHat | squid:4-8040020240122165847.522a0ee4 | * |
Red Hat Enterprise Linux 8.6 Extended Update Support | RedHat | squid:4-8060020231222131040.ad008a3a | * |
Red Hat Enterprise Linux 8.8 Extended Update Support | RedHat | squid:4-8080020231222130009.63b34585 | * |
Red Hat Enterprise Linux 9 | RedHat | squid-7:5.5-6.el9_3.2 | * |
Red Hat Enterprise Linux 9.0 Extended Update Support | RedHat | squid-7:5.2-1.el9_0.4 | * |
Red Hat Enterprise Linux 9.2 Extended Update Support | RedHat | squid-7:5.5-5.el9_2.3 | * |
Squid | Ubuntu | bionic | * |
Squid | Ubuntu | devel | * |
Squid | Ubuntu | focal | * |
Squid | Ubuntu | jammy | * |
Squid | Ubuntu | lunar | * |
Squid | Ubuntu | mantic | * |
Squid | Ubuntu | noble | * |
Squid | Ubuntu | oracular | * |
Squid | Ubuntu | trusty | * |
Squid | Ubuntu | upstream | * |
Squid | Ubuntu | xenial | * |
Squid3 | Ubuntu | bionic | * |
Squid3 | Ubuntu | esm-infra/bionic | * |
Squid3 | Ubuntu | esm-infra/xenial | * |
Squid3 | Ubuntu | trusty | * |
Squid3 | Ubuntu | xenial | * |