Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to a Buffer Overread bug Squid is vulnerable to a Denial of Service attack against Squid HTTP Message processing. This bug is fixed by Squid version 6.5. Users are advised to upgrade. There are no known workarounds for this vulnerability.
{ "vanir_signatures": [ { "id": "CVE-2023-49285-0321cf26", "digest": { "length": 314.0, "function_hash": "164979830842734690722875744928057871569" }, "signature_version": "v1", "target": { "file": "src/time/rfc1123.cc", "function": "make_month" }, "deprecated": false, "signature_type": "Function", "source": "https://github.com/squid-cache/squid/commit/deee944f9a12c9fd399ce52f3e2526bb573a9470" }, { "id": "CVE-2023-49285-47e2fa4b", "digest": { "line_hashes": [ "254665393534594738508084282088153151738", "293766430760506514691035815790752071906", "52130077338185614748797763944600405352", "233931196911573896403460085548435094738", "145985704875151314138039684014417983553" ], "threshold": 0.9 }, "signature_version": "v1", "target": { "file": "lib/rfc1123.c" }, "deprecated": false, "signature_type": "Line", "source": "https://github.com/squid-cache/squid/commit/77b3fb4df0f126784d5fd4967c28ed40eb8d521b" }, { "id": "CVE-2023-49285-9f7ff880", "digest": { "length": 314.0, "function_hash": "164979830842734690722875744928057871569" }, "signature_version": "v1", "target": { "file": "lib/rfc1123.c", "function": "make_month" }, "deprecated": false, "signature_type": "Function", "source": "https://github.com/squid-cache/squid/commit/77b3fb4df0f126784d5fd4967c28ed40eb8d521b" }, { "id": "CVE-2023-49285-a2c08ad6", "digest": { "line_hashes": [ "254665393534594738508084282088153151738", "293766430760506514691035815790752071906", "52130077338185614748797763944600405352", "233931196911573896403460085548435094738", "145985704875151314138039684014417983553" ], "threshold": 0.9 }, "signature_version": "v1", "target": { "file": "src/time/rfc1123.cc" }, "deprecated": false, "signature_type": "Line", "source": "https://github.com/squid-cache/squid/commit/deee944f9a12c9fd399ce52f3e2526bb573a9470" } ] }