CVE-2023-46847
Red Hat Red Hat Enterprise Linux 6 Extended Lifecycle Support, Red Hat Enterprise Linux 7, Red Hat Enterprise Linux 7.6 Advanced Update Support
Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is configured to accept HTTP Digest Authentication.
- CVSS
- 7.5
- EPSS
- 88.4% 99.8% percentile
- CISA KEV
- Not listed
- Published
- 2023.11.03