An issue was discovered in Squid through 4.7. When handling the tag esi:when when ESI is enabled, Squid calls ESIExpression::Evaluate. This function uses a fixed stack buffer to hold the expression while it's being evaluated. When processing the expression, it could either evaluate the top of the stack, or add a new member to the stack. When adding a new member, there is no check to ensure that the stack won't overflow.
CVSS Details
- CVSS 3.1 Base Score: 9.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | — | Upgrade libecapUpgrade libecap-devel | May 4, 2022 | Apr 15, 2020 |
| Alpine Linux | — | Upgrade squid | Jan 5, 2021 | Apr 15, 2020 |
| Amazon Linux Ami 2 | — | Upgrade squidUpgrade squid-sysvinitUpgrade squid-migration-scriptUpgrade squid-debuginfo | Jul 2, 2020 | Apr 15, 2020 |
| Amazon_linux | — | Upgrade squid | Jun 4, 2020 | Apr 15, 2020 |
| Centos_linux | — | Upgrade squidUpgrade squid-debuginfoUpgrade libecap-debuginfoUpgrade libecap-develUpgrade squid-sysvinitUpgrade libecap-debugsourceUpgrade squid-migration-scriptUpgrade squid-debugsourceUpgrade libecap | May 7, 2020 | Apr 15, 2020 |
| Debian | — | Upgrade squid | May 11, 2020 | Apr 15, 2020 |
| Gentoo Linux | — | Upgrade net-proxy/squid. | Jun 15, 2020 | Apr 15, 2020 |
| Huawei Euleros 2_0_sp2 | — | Upgrade squid-migration-scriptUpgrade squid | Jun 17, 2020 | Apr 15, 2020 |
| Huawei Euleros 2_0_sp3 | — | Upgrade squid-migration-scriptUpgrade squid | Sep 28, 2020 | Apr 15, 2020 |
| Huawei Euleros 2_0_sp5 | — | Upgrade squid | Sep 3, 2020 | Apr 15, 2020 |
| Huawei Euleros 2_0_sp8 | — | Upgrade squid | Jul 31, 2020 | Apr 15, 2020 |
| Oracle Solaris | — | Upgrade web/proxy/squid to version 4.11-11.4.22.0.1.69.4 on Solaris 11.4 | Jan 19, 2021 | Apr 15, 2020 |
| Oracle_linux | — | Upgrade libecap-develUpgrade squid-migration-scriptUpgrade squidUpgrade squid-sysvinitUpgrade libecap | Oct 5, 2022 | Apr 24, 2020 |
| Redhat_linux | — | Upgrade libecap-debuginfoUpgrade libecap-debugsourceUpgrade squid-debuginfoUpgrade squidUpgrade squid-debugsourceUpgrade squid-migration-scriptUpgrade libecap-develUpgrade libecapUpgrade squid-sysvinitNo solution exists | May 7, 2020 | Apr 15, 2020 |
| Rocky_linux | — | Upgrade libecapUpgrade libecap-debuginfoUpgrade libecap-develUpgrade libecap-debugsource | Mar 12, 2024 | Apr 15, 2020 |
| Suse | — | Upgrade squidUpgrade squid3 | Apr 30, 2020 | Apr 15, 2020 |
| Ubuntu | — | Upgrade squid | Jun 24, 2020 | Apr 15, 2020 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub