Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the idnsALookup function in dns_internal.cc in Squid 3.2 through 3.2.11 and 3.3 through 3.3.6 allows remote attackers to cause a denial of service (memory corruption and server termination) via a long name in a DNS lookup request.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Squid ‘idnsALookup()’函数远程缓冲区溢出漏洞
Vulnerability Description
Squid(全称Squid Cache)是一套代理服务器和Web缓存服务器软件。该软件提供缓存万维网、过滤流量、代理上网等功能。 Squid 3.2至3.2.11版本和3.3至3.3.6版本中的dns_internal.cc文件中的‘idnsALookup’函数中存在缓冲区溢出漏洞,该漏洞源于‘idnsALookup()’ 函数没有正确执行边界检查。远程攻击者可通过发送包含长名子的DNS查找请求,利用该漏洞造成拒绝服务(内存损坏和服务器终止)。
CVSS Information
N/A
Vulnerability Type
N/A