Squid.HTTP.Host.Header.Port.Handling.DoS
Description
This indicates an attempt to exploit a Denial of Service vulnerability in Squid proxy.
The vulnerability is due to a validation error when the vulnerable software handles malformed port values of a crafted HTTP host header field. A remote attacker may be able to exploit this to cause a denial of service condition on the affected system.
Affected Products
Squid Project Squid 3.2.x prior to 3.2.13
Squid Project Squid 3.3.x prior to 3.3.8
Impact
Denial of Service: Remote attackers can crash vulnerable systems.
Recommended Actions
Apply the most recent upgrade or patch from the vendor.
http://www.squid-cache.org/Advisories/SQUID-2013_3.txt
Coverage
| IPS (Regular DB) | |
| IPS (Extended DB) |