Vulnerability Database

289,697

Total vulnerabilities in the database

CVE-2013-4115

Buffer overflow in the idnsALookup function in dns_internal.cc in Squid 3.2 through 3.2.11 and 3.3 through 3.3.6 allows remote attackers to cause a denial of service (memory corruption and server termination) via a long name in a DNS lookup request.

  • Published: Aug 10, 2013
  • Updated: Apr 13, 2023
  • CVE: CVE-2013-4115
  • Severity: High
  • Exploit:

CVSS v2:

  • Severity: High
  • Score: 7.5
  • AV:N/AC:L/Au:N/C:P/I:P/A:P

CWEs:

Software From Fixed in
opensuse / opensuse 12.3 12.3.x
opensuse / opensuse 11.4 11.4.x
opensuse / opensuse 12.2 12.2.x
squid-cache / squid 3.3.3 3.3.3.x
squid-cache / squid 3.2.0.9 3.2.0.9.x
squid-cache / squid 3.3.5 3.3.5.x
squid-cache / squid 3.3.0.3 3.3.0.3.x
squid-cache / squid 3.2.0.6 3.2.0.6.x
squid-cache / squid 3.3.2 3.3.2.x
squid-cache / squid 3.3.1 3.3.1.x
squid-cache / squid 3.3.0 3.3.0.x
squid-cache / squid 3.3.0.2 3.3.0.2.x
squid-cache / squid 3.2.0.7 3.2.0.7.x
squid-cache / squid 3.2.0.3 3.2.0.3.x
squid-cache / squid 3.3.4 3.3.4.x
squid-cache / squid 3.3.6 3.3.6.x
squid-cache / squid 3.2.0.4 3.2.0.4.x
squid-cache / squid 3.2.0.2 3.2.0.2.x
squid-cache / squid 3.2.0.8 3.2.0.8.x
squid-cache / squid 3.2.0.5 3.2.0.5.x