Lucene search

K
nessusTenable8951.PRM
HistoryOct 13, 2015 - 12:00 a.m.

Squid 3.x < 3.5.6 Multiple Vulnerabilities

2015-10-1300:00:00
Tenable
www.tenable.com
17

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.009

Percentile

83.1%

Versions of Squid 3.x prior to 3.5.6 are potentially affected by by the following vulnerabilities :

  • An authentication bypass vulnerability exists due to a flaw in file ‘tunnel.cc’, which is triggered whenever cache peer CONNECT responses are blindly forwarded in a hierarchy of two or more proxies, resulting in unrestricted access to a back-end proxy through its gateway proxy. A remote, unauthenticated attacker, using a specially crafted request, can exploit this vulnerability to bypass authentication or gain access to protected resources. This issue occurs in configurations with cache_peer enabled, and exploitation would require that the two proxies have differing levels of security. (CVE-2015-5400)
  • A flaw in ‘ssl/support.cc’ that is triggered during the handling of repeated client-initiated TLS renegotation messages. This may allow a remote attacker to cause a denial of service.
Binary data 8951.prm
VendorProductVersionCPE
squid-cachesquidcpe:/a:squid-cache:squid

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.009

Percentile

83.1%