CVE-2023-46848

Updated: 2024-11-24 05:59:22.626387

Description:

Squid is vulnerable to Denial of Service, where a remote attacker can perform DoS by sending ftp:// URLs in HTTP Request messages or constructing ftp:// URLs from FTP Native input.


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x 0
CVSS Version 3.x HIGH 7.5

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

AlmaLinux 9.2 ESU squid 5.5 7.5 HIGH In Testing 2024-11-26 16:19:14
CentOS 6 ELS squid 3.1.23 7.5 HIGH Not Vulnerable 2023-11-10 02:30:09
CentOS 8.4 ELS squid 4.11-4 7.5 HIGH Not Vulnerable 2023-11-10 02:30:09
CentOS 8.5 ELS squid 4.15-1 7.5 HIGH Released CLSA-2023:1700161280 2023-11-16 16:12:39
CloudLinux 6 ELS squid 3.1.23 7.5 HIGH Not Vulnerable 2023-11-10 02:30:09
Oracle Linux 6 ELS squid 3.1.23 7.5 HIGH Not Vulnerable 2023-11-10 02:30:09
Ubuntu 16.04 ELS squid 3.5.12-1 7.5 HIGH Not Vulnerable 2023-11-10 02:30:09
Ubuntu 18.04 ELS squid 3.5.27-1 7.5 HIGH Not Vulnerable 2023-11-10 02:30:09