yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2023-46846
Component Overview
Vulnerability Overview
Name
CVE-2023-46846
Source
NVD (
link
)
Debian (
link
)
Description
SQUID is vulnerable to HTTP request smuggling, caused by chunked decoder lenience, allows a remote attacker to perform Request/Response smuggling past firewall and frontend security systems.
CWEs
CWE-444
CWE-444
Published Date
Nov 3, 2023
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://access.redhat.com/errata/RHSA-2023:6266
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6267
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6268
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6748
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6801
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6803
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6804
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6810
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:7213
Third Party Advisory
https://access.redhat.com/security/cve/CVE-2023-46846
Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=2245910
Issue Tracking
https://github.com/squid-cache/squid/security/advisories/GHSA-j83v-w3p4-5cqh
Vendor Advisory
https://access.redhat.com/errata/RHSA-2023:6266
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6267
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6268
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6748
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6801
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6803
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6804
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6810
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:7213
Third Party Advisory
https://access.redhat.com/security/cve/CVE-2023-46846
Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=2245910
Issue Tracking
https://github.com/squid-cache/squid/security/advisories/GHSA-j83v-w3p4-5cqh
Vendor Advisory
Analysis
#
Affected Component
Analysis
squid
Exploitable
Vulnerability Ratings
#
9.3
CVSSv31
5.3
CVSSv31
NaN
other
Others affected components
#
Name
Project
Project Version
Version
Status
squid
buildroot
2025.02.x
6.14
Not Affected
squid
buildroot
master
7.6
Not Affected
squid
openwrt
master
7.1-r1
Not Affected
squid
openwrt
openwrt-25.12
7.1-r1
Not Affected
squid
yocto
master
7.5
Not Affected
squid
yocto
scarthgap
6.14
Not Affected