ZeroHour

CVE-2024-37894

CVSS 3.1
6.3 medium
EPSS
6%p93
Published
()
Modified
Description

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when assigning ESI variables, Squid is susceptible to a Memory Corruption error. This error can lead to a Denial of Service attack.

Vendors
squid-cache
Products
squid
Weakness
CWE-787
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:C/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.