SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Squid strHdrAcptLangGetItem DoS 2

Category: WEB-ATTACKS      

The strHdrAcptLangGetItem function in errorpage.cc in Squid 3.2.x before 3.2.9 and 3.3.x before 3.3.3 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a "," character in an Accept-Language header.

References
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-1839


Relevant Information