Squid 2.7 to 2.7.STABLE5, 3.0 to 3.0.STABLE12, and 3.1 to 3.1.0.4 allows remote attackers to cause a denial of service via an HTTP request with an invalid version number, which triggers a reachable assertion in (1) HttpMsg.c and (2) HttpStatusLine.c.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2009-02-08T22:00:00

Updated: 2024-08-07T04:31:26.320Z

Reserved: 2009-02-08T00:00:00

Link: CVE-2009-0478

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2009-02-08T22:30:00.360

Modified: 2018-10-11T21:01:49.527

Link: CVE-2009-0478

cve-icon Redhat

Severity : Moderate

Publid Date: 2009-02-02T00:00:00Z

Links: CVE-2009-0478 - Bugzilla