[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253928

 
 

909

 
 

198006

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

ALAS2SQUID4-2023-005 --- squid

ID: oval:org.secpod.oval:def:1701696Date: (C)2023-10-10   (M)2023-12-20
Class: PATCHFamily: unix




A flaw was found in squid. Due to improper validation while parsing the request URI, squid is vulnerable to HTTP request smuggling. This issue could allow a trusted client to perform an HTTP request smuggling attack and access services otherwise forbidden by squid. The highest threat from this vulnerability is to data confidentiality

Platform:
Amazon Linux 2
Product:
squid
Reference:
ALAS2SQUID4-2023-005
CVE-2020-25097
CVE    1
CVE-2020-25097

© SecPod Technologies