Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Incorrect Check of Function Return Value bug Squid is vulnerable to a Denial of Service attack against its Helper process management. This bug is fixed by Squid version 6.5. Users are advised to upgrade. There are no known workarounds for this vulnerability.
{ "vanir_signatures": [ { "digest": { "threshold": 0.9, "line_hashes": [ "168910324942989199999064472920978860794", "31642949536680690415551713800936403591", "196349303231352603213409180699614452763", "166047664784494259026418673057741521309", "259903887090428379696619366389585289717", "141707226928726948943079524320221291185", "75344335701222699619018925119922941416", "232938750511746159368728538951421339862", "172227612778647138303649007557305363154", "57615831552351590610481538051244301752", "21764096525914819630222744744340056374", "112484087258599813274648459817230629483", "151096893578886850320727613521577257913", "143027954331363495569235615432303115011", "317534407961939567772635454214246440250", "163546160132567331067280241624989547118" ] }, "signature_type": "Line", "source": "https://github.com/squid-cache/squid/commit/6014c6648a2a54a4ecb7f952ea1163e0798f9264", "signature_version": "v1", "target": { "file": "src/ipc.cc" }, "deprecated": false, "id": "CVE-2023-49286-6d6b339b" } ] }