vulnerability

Red Hat: CVE-2020-11653: CVE-2020-11653 varnish: remote clients may cause Varnish to assert and restart which could result in DoS (Multiple Advisories)

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:N/A:P)
Published
2020-04-08
Added
2020-11-05
Modified
2023-12-15

Description

An issue was discovered in Varnish Cache before 6.0.6 LTS, 6.1.x and 6.2.x before 6.2.3, and 6.3.x before 6.3.2. It occurs when communication with a TLS termination proxy uses PROXY version 2. There can be an assertion failure and daemon restart, which causes a performance loss.

Solution(s)

redhat-upgrade-varnishredhat-upgrade-varnish-develredhat-upgrade-varnish-docsredhat-upgrade-varnish-modulesredhat-upgrade-varnish-modules-debuginforedhat-upgrade-varnish-modules-debugsource
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.