← All CVEs

CVE-2019-18679

high · 7.5

An issue was discovered in Squid 2.x, 3.x, and 4.x through 4.8. Due to incorrect data management, it is vulnerable to information disclosure when processing HTTP Digest Authentication. Nonce tokens contain the raw byte value of a pointer that sits within heap memory allocation. This information reduces ASLR protections and may aid attackers isolating memory areas to target for remote code execution attacks.

7.5
CVSS
41.0%
EPSS (exploit prob.)
99th
EPSS percentile
2019-11-26
Published

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Weaknesses

CWE-200

Affected products

VendorProductAffected versions
squid-cachesquid>= 2.0, <= 2.7
squid-cachesquid>= 3.0, <= 3.5.28
squid-cachesquid>= 4.0, <= 4.8
squid-cachesquid2.7
squid-cachesquid2.7
squid-cachesquid2.7
squid-cachesquid2.7
squid-cachesquid2.7
squid-cachesquid2.7
squid-cachesquid2.7
squid-cachesquid2.7
canonicalubuntu_linux16.04
canonicalubuntu_linux18.04
canonicalubuntu_linux19.04
canonicalubuntu_linux19.10
debiandebian_linux8.0
fedoraprojectfedora30
fedoraprojectfedora31

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2019-18679