CVE-2021-31808
27.05.2021, 14:15
An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to an input-validation bug, it is vulnerable to a Denial of Service attack (against all clients using the proxy). A client sends an HTTP Range request to trigger this.Enginsight
Vendor | Product | Version |
---|---|---|
squid-cache | squid | 𝑥 < 4.15 |
squid-cache | squid | 5.0 ≤ 𝑥 < 5.0.6 |
debian | debian_linux | 9.0 |
debian | debian_linux | 10.0 |
netapp | cloud_manager | - |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
squid |
| ||||||||||||||||||||||||
squid3 |
|
References