Squid Cache SNMP Denial of Service Vulnerability
BID:4146
Info
Squid Cache SNMP Denial of Service Vulnerability
| Bugtraq ID: | 4146 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Feb 21 2002 12:00AM |
| Updated: | Feb 21 2002 12:00AM |
| Credit: | Credited to Jouko Pynnonen <[email protected]> and Henrik Nordstrom <[email protected]>. |
| Vulnerable: |
National Science Foundation Squid Web Proxy 2.4 STABLE3 National Science Foundation Squid Web Proxy 2.4 STABLE2 National Science Foundation Squid Web Proxy 2.4 STABLE1 National Science Foundation Squid Web Proxy 2.4 National Science Foundation Squid Web Proxy 2.3.1 National Science Foundation Squid Web Proxy 2.3 National Science Foundation Squid Web Proxy 2.2 National Science Foundation Squid Web Proxy 2.1 National Science Foundation Squid Web Proxy 2.0 |
| Not Vulnerable: |
National Science Foundation Squid Web Proxy 2.4 STABLE4 |
Discussion
Squid Cache SNMP Denial of Service Vulnerability
A memory leak exists in the Squid proxy server's SNMP implementation.
It may be possible for remote attackers to cause the process to consume all allowable resources by repeatedly transmitting malformed SNMP messages. If resource limits have not been set on the Squid process, the performance of the entire system may be degraded.
To exploit this vulnerability, the Squid SNMP interface must be enabled and the attacker must be able to send traffic to the SNMP port. SNMP support in Squid is disabled by default.
A memory leak exists in the Squid proxy server's SNMP implementation.
It may be possible for remote attackers to cause the process to consume all allowable resources by repeatedly transmitting malformed SNMP messages. If resource limits have not been set on the Squid process, the performance of the entire system may be degraded.
To exploit this vulnerability, the Squid SNMP interface must be enabled and the attacker must be able to send traffic to the SNMP port. SNMP support in Squid is disabled by default.
Exploit / POC
Squid Cache SNMP Denial of Service Vulnerability
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Currently the SecurityFocus staff are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
Squid Cache SNMP Denial of Service Vulnerability
References:
References: