The (1) ntlm_fetch_string and (2) ntlm_get_string functions in Squid 2.5.6 and earlier, with NTLM authentication enabled, allow remote attackers to cause a denial of service (application crash) via an NTLMSSP packet that causes a negative value to be passed to memcpy.
References
Configurations
Information
Published : 2004-11-02 21:00
Updated : 2017-10-10 18:29
NVD link : CVE-2004-0832
Mitre link : CVE-2004-0832
JSON object : View
CWE
Products Affected
squid
- squid