yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2021-46784
Component Overview
Vulnerability Overview
Name
CVE-2021-46784
Source
NVD (
link
)
Debian (
link
)
Description
In Squid 3.x through 3.5.28, 4.x through 4.17, and 5.x before 5.6, due to improper buffer management, a Denial of Service can occur when processing long Gopher server responses.
CWEs
CWE-617
Published Date
Jul 17, 2022
Updated Date
Jun 17, 2026
Workaround
-
Advisories
http://www.squid-cache.org/Versions/v4/changesets/SQUID-2021_7.patch
Broken Link
http://www.squid-cache.org/Versions/v5/changesets/SQUID-2021_7.patch
Patch
https://github.com/squid-cache/squid/commit/5e2ea2b13bd98f53e29964ca26bb0d602a8a12b9
Patch
https://github.com/squid-cache/squid/security/advisories/GHSA-f5cp-6rh3-284w
Mitigation
https://security-tracker.debian.org/tracker/CVE-2021-46784
Third Party Advisory
https://security.netapp.com/advisory/ntap-20221223-0007/
Third Party Advisory
http://www.squid-cache.org/Versions/v4/changesets/SQUID-2021_7.patch
Broken Link
http://www.squid-cache.org/Versions/v5/changesets/SQUID-2021_7.patch
Patch
https://github.com/squid-cache/squid/commit/5e2ea2b13bd98f53e29964ca26bb0d602a8a12b9
Patch
https://github.com/squid-cache/squid/security/advisories/GHSA-f5cp-6rh3-284w
Mitigation
https://security-tracker.debian.org/tracker/CVE-2021-46784
Third Party Advisory
https://security.netapp.com/advisory/ntap-20221223-0007/
Third Party Advisory
Analysis
#
Affected Component
Analysis
squid
Exploitable
Vulnerability Rating
#
6.5
CVSSv31
Others affected components
#
Name
Project
Project Version
Version
Status
squid
buildroot
2025.02.x
6.14
Not Affected
squid
buildroot
master
7.6
Not Affected
squid
openwrt
master
7.1-r1
Not Affected
squid
openwrt
openwrt-25.12
7.1-r1
Not Affected
squid
yocto
master
7.5
Not Affected
squid
yocto
scarthgap
6.14
Not Affected