#VU84442 Uncontrolled Recursion in Squid - CVE-2023-50269
Published: December 15, 2023
Squid
Squid-cache.org
Description
The vulnerability allows a remote client to perform a denial of service (DoS) attack.
The vulnerability exists due to uncontrolled recursion when parsing HTTP requests. A remote client can send a specially crafted HTTP request with the a large X-Forwarded-For header, when the follow_x_forwarded_for feature is configured, and perform a denial of service (DoS) attack.