ID

VAR-201009-0314


TITLE

Squid String Handling Null Pointer Application Denial of Service Vulnerability

Trust: 0.6

sources: CNVD: CNVD-2010-1863

DESCRIPTION

Squid is a powerful proxy server and web cache server. Some internal squid string handlers do not properly check for null pointers. Sending a specially constructed request can result in a null pointer reference, causing the server to crash.

Trust: 0.6

sources: CNVD: CNVD-2010-1863

IOT TAXONOMY

category:['Network device']sub_category: -

Trust: 0.6

sources: CNVD: CNVD-2010-1863

AFFECTED PRODUCTS

vendor:squidmodel:squidscope:ltversion:3.2.0.2

Trust: 0.6

vendor:squidmodel:squidscope:ltversion:3.1.8

Trust: 0.6

sources: CNVD: CNVD-2010-1863

PATCH

title:Squid string handling null pointer application denial of service vulnerability patchurl:https://www.cnvd.org.cn/patchinfo/show/937

Trust: 0.6

sources: CNVD: CNVD-2010-1863

EXTERNAL IDS

db:CNVDid:CNVD-2010-1863

Trust: 0.6

sources: CNVD: CNVD-2010-1863

REFERENCES

url:http://www.squid-cache.org/advisories/squid-2010_3.txthttp

Trust: 0.6

sources: CNVD: CNVD-2010-1863

SOURCES

db:CNVDid:CNVD-2010-1863

LAST UPDATE DATE

2022-05-04T09:06:16.329000+00:00


SOURCES UPDATE DATE

db:CNVDid:CNVD-2010-1863date:2010-09-07T00:00:00

SOURCES RELEASE DATE

db:CNVDid:CNVD-2010-1863date:2010-09-07T00:00:00