Squid.HTTP.Host.Header.Port.Handling.DoS

description-logoDescription

This indicates an attempt to exploit a Denial of Service vulnerability in Squid proxy.
The vulnerability is due to a validation error when the vulnerable software handles malformed port values of a crafted HTTP host header field. A remote attacker may be able to exploit this to cause a denial of service condition on the affected system.

affected-products-logoAffected Products

Squid Project Squid 3.2.x prior to 3.2.13
Squid Project Squid 3.3.x prior to 3.3.8

Impact logoImpact

Denial of Service: Remote attackers can crash vulnerable systems.

recomended-action-logoRecommended Actions

Apply the most recent upgrade or patch from the vendor.
http://www.squid-cache.org/Advisories/SQUID-2013_3.txt

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Status Detail
2020-12-29 16.987
Modified
Sig Added
2019-08-29 14.679
Modified
Sig Added