UBUNTU-CVE-2023-49286
Dashboard / Vulnerabilities / UBUNTU-CVE-2023-49286
UBUNTU-CVE-2023-49286
Summary:
Details: Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Incorrect Check of Function Return Value bug Squid is vulnerable to a Denial of Service attack against its Helper process management. This bug is fixed by Squid version 6.5. Users are advised to upgrade. There are no known workarounds for this vulnerability.
References: https://ubuntu.com/security/CVE-2023-49286, https://github.com/squid-cache/squid/security/advisories/GHSA-xggx-9329-3c27, https://megamansec.github.io/Squid-Security-Audit/ipc-assert.html, https://ubuntu.com/security/notices/USN-6594-1, https://www.cve.org/CVERecord?id=CVE-2023-49286, https://ubuntu.com/security/notices/USN-6857-1
Affected packages
Package
Name: squid3
Purl: pkg:deb/ubuntu/[email protected]+esm3?arch=source&distro=esm-infra/xenial
Affected ranges
Type: ECOSYSTEM
Events:
