Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is configured to accept HTTP Digest Authentication.
Metrics
Affected Vendors & Products
Advisories
Source | ID | Title |
---|---|---|
![]() |
DLA-3709-1 | squid security update |
![]() |
DSA-5637-1 | squid security update |
![]() |
USN-6500-1 | Squid vulnerabilities |
![]() |
USN-6500-2 | Squid vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 22 Nov 2024 12:00:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|
Mon, 16 Sep 2024 16:30:00 +0000
Type | Values Removed | Values Added |
---|---|---|
References |
|

Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2025-09-12T19:51:50.988Z
Reserved: 2023-10-27T08:36:38.158Z
Link: CVE-2023-46847

No data.

Status : Modified
Published: 2023-11-03T08:15:08.023
Modified: 2024-11-21T08:29:25.000
Link: CVE-2023-46847


No data.