[Forgot Password]
Login  Register Subscribe

30480

 
 

423868

 
 

253928

 
 

909

 
 

198006

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

squid: HTTP Request Smuggling (CVE-2020-25097)

ID: oval:org.secpod.oval:def:1801934Date: (C)2021-08-02   (M)2023-11-10
Class: PATCHFamily: unix




An issue was discovered in Squid through 4.13 and 5.x through 5.0.4. Due to improper input validation, it allows a trusted client to perform HTTP Request Smuggling and access services otherwise forbidden by the security controls. This occurs for certain uri_whitespace configuration settings.

Platform:
Alpine Linux 3.13
Alpine Linux 3.14
Product:
squid
Reference:
12549
CVE-2020-25097
CVE    1
CVE-2020-25097

© SecPod Technologies