CLSA-2022-1665502073

    Dashboard / Vulnerabilities / CLSA-2022-1665502073

    CLSA-2022-1665502073

    Published: 11 Oct 2022Last Modified: 4 Jun 2026
    Upstream:

    Summary: Fix CVE(s): CVE-2022-41318

    Details: * SECURITY UPDATE: buffer-over-read in SSPI and SMB authentication - debian/patches/CVE-2022-41318.patch: improve debugs and checks sequence to clarify cases and ensure that all are handled correctly in lib/ntlmauth/ntlmauth.cc - CVE-2022-41318

    Affected packages

    Package

    Name: squid

    Purl: pkg:deb/tuxcare/squid?distro=ubuntu-16.04

    Affected ranges

    Type: ECOSYSTEM

    Events:

    Introduced- 0
    Fixed -3.5.12-1ubuntu7.17+tuxcare.els2

    Affected versions

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    CLSA-2022-1665502073 | CVE-DB