CVE-2023-46848
Summary
| CVE | CVE-2023-46848 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2023-11-03 08:15:00 UTC |
| Updated | 2023-11-13 20:03:00 UTC |
| Description | Squid is vulnerable to Denial of Service, where a remote attacker can perform DoS by sending ftp:// URLs in HTTP Request messages or constructing ftp:// URLs from FTP Native input. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 161045 Oracle Enterprise Linux Security Update for squid (ELSA-2023-6266)
- 161091 Oracle Enterprise Linux Security Update for squid (ELSA-2023-6748)
- 199932 Ubuntu Security Notification for Squid Vulnerabilities (USN-6500-1)
- 242271 Red Hat Update for squid (RHSA-2023:6266)
- 242276 Red Hat Update for squid (RHSA-2023:6268)
- 242289 Red Hat Update for squid (RHSA-2023:6748)
- 296108 Oracle Solaris 11.4 Support Repository Update (SRU) 66.164.1 Missing (CPUJAN2024)
- 356900 Amazon Linux Security Advisory for squid : ALAS2023-2023-429
- 505941 Alpine Linux Security Update for squid
- 6000513 Debian Security Update for squid (DSA 5637-1)
- 755236 SUSE Enterprise Linux Security Update for squid (SUSE-SU-2023:4381-1)
- 755237 SUSE Enterprise Linux Security Update for squid (SUSE-SU-2023:4380-1)
- 755241 SUSE Enterprise Linux Security Update for squid (SUSE-SU-2023:4384-1)
- 941335 AlmaLinux Security Update for squid (ALSA-2023:6266)
- 941397 AlmaLinux Security Update for squid (ALSA-2023:6748)
- 961070 Rocky Linux Security Update for squid (RLSA-2023:6266)