CVE-2004-0541
EPSS 71.1%
描述
Buffer overflow in the ntlm_check_auth (NTLM authentication) function for Squid Web Proxy Cache 2.5.x and 3.x, when compiled with NTLM handlers enabled, allows remote attackers to execute arbitrary code via a long password ("pass" variable).
如何修補 CVE-2004-0541
要修補 CVE-2004-0541,請將受影響套件升級到下列已修補版本。
- Debian/squid—升級至 2.5.5-5 或更新版本
CVE-2004-0541 正在被利用嗎?
可能 — EPSS 為 71.1%,屬於高被利用機率區間,建議優先修補。
受影響套件(1)
- from 0, < 2.5.5-5