Lucene search

K
cvelistRedhatCVELIST:CVE-2013-1839
HistorySep 30, 2013 - 8:00 p.m.

CVE-2013-1839

2013-09-3020:00:00
redhat
www.cve.org
7

AI Score

6.2

Confidence

Low

EPSS

0.902

Percentile

98.8%

The strHdrAcptLangGetItem function in errorpage.cc in Squid 3.2.x before 3.2.9 and 3.3.x before 3.3.3 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a “,” character in an Accept-Language header.

AI Score

6.2

Confidence

Low

EPSS

0.902

Percentile

98.8%