Description
Off-by-one error in the snmpHandleUdp function in snmp_core.cc in Squid 2.x and 3.x, when an SNMP port is configured, allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted UDP SNMP request, which triggers a heap-based buffer overflow.
CVSS vector
AV:N/AC:M/C:P/I:P/A:PExploitability: 8.6 | Impact: 6.4 Affected Packages3 packages
🔴Vulnerability Details
4GHSAGHSA-9v4x-8f3c-4hmw: Off-by-one error in the snmpHandleUdp function in snmp_core↗2022-05-17 ▶ OSVsquid3 vulnerabilities↗2016-03-07 ▶ OSVCVE-2014-6270: Off-by-one error in the snmpHandleUdp function in snmp_core↗2014-09-12 ▶ CVEListCVE-2014-6270: Off-by-one error in the snmpHandleUdp function in snmp_core↗2014-09-12 ▶ 📋Vendor Advisories
3UbuntuSquid vulnerabilities↗2016-03-07 ▶ Red Hatsquid: off-by-one error in snmpHandleUdp() leading to a bss-based buffer overflow (SQUID-2014:3)↗2014-09-09 ▶ DebianCVE-2014-6270: squid - Off-by-one error in the snmpHandleUdp function in snmp_core.cc in Squid 2.x and ...↗2014 ▶ 💬Community
2BugzillaCVE-2014-6270 squid: off-by-one error in snmpHandleUdp() leading to a bss-based buffer overflow (SQUID-2014:3)↗2014-09-10 ▶ BugzillaCVE-2014-6270 squid: off-by-one error in snmpHandleUdp() leading to a heap-based buffer overflow [fedora-all]↗2014-09-10 ▶