Lucene search

K
osvGoogleOSV:CVE-2019-12526
HistoryNov 26, 2019 - 5:15 p.m.

CVE-2019-12526

2019-11-2617:15:10
Google
osv.dev
16

AI Score

6.7

Confidence

Low

EPSS

0.037

Percentile

91.7%

An issue was discovered in Squid before 4.9. URN response handling in Squid suffers from a heap-based buffer overflow. When receiving data from a remote server in response to an URN request, Squid fails to ensure that the response can fit within the buffer. This leads to attacker controlled data overflowing in the heap.