squid: Information Disclosure issue in HTTP Digest Authentication (CVE-2019-18679)
Due to incorrect data management Squid is vulnerable to a information disclosure when processing HTTP Digest Authentication.
Fixed in version:
Squid 4.9
References:
http://www.squid-cache.org/Advisories/SQUID-2019_11.txt
Patch:
Affected branches:
-
master -
3.10-stable -
3.9-stable -
3.8-stable