#VU25020 Buffer overflow in Squid - CVE-2020-8517
Published: February 7, 2020
Squid
Squid-cache.org
Description
The vulnerability allows a remote attacker to perform a denial of service attack.
The vulnerability exists due to a boundary error in the NTLM authentication credentials parser in ext_lm_group_acl. A remote attacker can send a specially crafted HTTP request to the affected proxy server, trigger memory corruption and perform a denial of service attack.