Squid 'strHdrAcptLangGetItem()' Function Remote Denial of Service Vulnerability
BID:58316
Info
Squid 'strHdrAcptLangGetItem()' Function Remote Denial of Service Vulnerability
| Bugtraq ID: | 58316 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2013-1839 |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 05 2013 12:00AM |
| Updated: | Apr 13 2015 10:06PM |
| Credit: | tytusromekiatomek |
| Vulnerable: |
Squid Squid 3.2.7 Squid Squid 3.2.5 Gentoo Linux |
| Not Vulnerable: | |
Discussion
Squid 'strHdrAcptLangGetItem()' Function Remote Denial of Service Vulnerability
Squid is prone to a remote denial-of-service vulnerability.
Exploiting this issue allows remote attackers to trigger denial-of-service conditions due to excessive CPU resource consumption.
Squid 3.2.5 and 3.2.7 are vulnerable; other versions may also be affected.
Squid is prone to a remote denial-of-service vulnerability.
Exploiting this issue allows remote attackers to trigger denial-of-service conditions due to excessive CPU resource consumption.
Squid 3.2.5 and 3.2.7 are vulnerable; other versions may also be affected.
Exploit / POC
Squid 'strHdrAcptLangGetItem()' Function Remote Denial of Service Vulnerability
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently, we are not aware of any working exploits. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Squid 'strHdrAcptLangGetItem()' Function Remote Denial of Service Vulnerability
Solution:
Updates are available. Please see the references or vendor advisory for more information.
Solution:
Updates are available. Please see the references or vendor advisory for more information.
References
Squid 'strHdrAcptLangGetItem()' Function Remote Denial of Service Vulnerability
References:
References:
- Re: Squid 3.2.7 DoS (loop, 100% cpu) strHdrAcptLangGetItem() at errorpage.cc (Kurt Seifried)
- Squid 3.2.7 DoS (loop, 100% cpu) strHdrAcptLangGetItem() at errorpage.cc (Fulldisclosure)
- Squid Versions (Squid)