yocto ▾
›
kirkstone ▾
›
vulnerability
›
CVE-2023-46847
Component Overview
Vulnerability Overview
Name
CVE-2023-46847
Source
NVD (
link
)
Debian (
link
)
Description
Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is configured to accept HTTP Digest Authentication.
CWEs
CWE-120
CWE-120
Published Date
Nov 3, 2023
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://access.redhat.com/errata/RHSA-2023:6266
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6267
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6268
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6748
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6801
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6803
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6804
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6805
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6810
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6882
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6884
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:7213
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:7576
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:7578
Third Party Advisory
https://access.redhat.com/security/cve/CVE-2023-46847
Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=2245916
Issue Tracking
https://github.com/squid-cache/squid/security/advisories/GHSA-phqj-m8gv-cq4g
Vendor Advisory
https://access.redhat.com/errata/RHSA-2023:6266
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6267
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6268
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6748
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6801
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6803
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6804
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6805
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6810
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6882
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:6884
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:7213
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:7576
Third Party Advisory
https://access.redhat.com/errata/RHSA-2023:7578
Third Party Advisory
https://access.redhat.com/security/cve/CVE-2023-46847
Third Party Advisory
https://bugzilla.redhat.com/show_bug.cgi?id=2245916
Issue Tracking
https://github.com/squid-cache/squid/security/advisories/GHSA-phqj-m8gv-cq4g
Vendor Advisory
Analysis
#
Affected Component
Analysis
squid
Exploitable
Vulnerability Ratings
#
8.6
CVSSv31
7.5
CVSSv31
Others affected components
#
Name
Project
Project Version
Version
Status
squid
buildroot
2025.02.x
6.14
Not Affected
squid
buildroot
master
7.6
Not Affected
squid
openwrt
master
7.1-r1
Not Affected
squid
openwrt
openwrt-25.12
7.1-r1
Not Affected
squid
yocto
master
7.5
Not Affected
squid
yocto
scarthgap
6.14
Not Affected