An issue was discovered in Squid 3.3.9 through 3.5.28 and 4.x through 4.7. When Squid is configured to use Digest authentication, it parses the header Proxy-Authorization. It searches for certain tokens such as domain, uri, and qop. Squid checks if this token's value starts with a quote and ends with one. If so, it performs a memcpy of its length minus 2. Squid never checks whether the value is just a single quote (which would satisfy its requirements), leading to a memcpy of its length minus 1.
CVSS Details
- CVSS 3.1 Base Score: 9.8
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alma_linux | — | Upgrade libecapUpgrade libecap-devel | May 4, 2022 | Jul 11, 2019 |
| Alpine Linux | — | Upgrade squid | Jan 19, 2021 | Jul 11, 2019 |
| Amazon Linux Ami 2 | — | Upgrade squid-migration-scriptUpgrade squid-debuginfoUpgrade squidUpgrade squid-sysvinit | Jul 2, 2020 | Jul 11, 2019 |
| Amazon_linux | — | Upgrade squid | Jun 4, 2020 | Jul 11, 2019 |
| Centos_linux | — | Upgrade libecap-develUpgrade libecapUpgrade squidUpgrade libecap-debuginfoUpgrade libecap-debugsourceUpgrade squid-debugsourceUpgrade squid-migration-scriptUpgrade squid-sysvinitUpgrade squid-debuginfo | May 7, 2020 | Jul 11, 2019 |
| Debian | — | Upgrade squid | Jul 22, 2019 | Jul 11, 2019 |
| Huawei Euleros 2_0_sp2 | — | Upgrade squidUpgrade squid-migration-script | Dec 4, 2019 | Jul 11, 2019 |
| Huawei Euleros 2_0_sp3 | — | Upgrade squid-migration-scriptUpgrade squid | Sep 25, 2019 | Jul 11, 2019 |
| Huawei Euleros 2_0_sp8 | — | Upgrade squid | Sep 30, 2019 | Jul 11, 2019 |
| Oracle Solaris | — | Upgrade web/proxy/squid to version 4.8-11.4.15.0.1.3.0 on Solaris 11.4 | Nov 20, 2019 | Jul 11, 2019 |
| Oracle_linux | — | Upgrade squidUpgrade squid-migration-scriptUpgrade squid-sysvinitUpgrade libecap-develUpgrade libecap | Oct 5, 2022 | Jul 12, 2019 |
| Redhat_linux | — | Upgrade squid-debugsourceUpgrade squid-migration-scriptUpgrade libecap-develUpgrade squidUpgrade squid-sysvinitNo solution existsUpgrade squid-debuginfoUpgrade libecap-debugsourceUpgrade libecap-debuginfoUpgrade libecap | May 7, 2020 | Jul 11, 2019 |
| Rocky_linux | — | Upgrade libecap-debuginfoUpgrade libecapUpgrade libecap-debugsourceUpgrade libecap-devel | Mar 12, 2024 | Jul 11, 2019 |
| Suse | — | Upgrade squidUpgrade squid3 | Aug 9, 2019 | Jul 11, 2019 |
| Ubuntu | — | Upgrade squidUpgrade squid3 | Jul 19, 2019 | Jul 11, 2019 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub