CVE-2020-14059: Medium severity squid web proxy cache vulnerability
An issue was discovered in Squid 5.x before 5.0.3. Due to an Incorrect Synchronization, a Denial of Service can occur when processing objects in an SMP cache because of an Ipc::Mem::PageStack::pop ABA problem during access to the memory page/slot management list.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2020-14059?
CVE-2020-14059 is a vulnerability in Squid 5.x before 5.0.3 that can lead to a Denial of Service due to an Incorrect Synchronization during processing of objects in an SMP cache.
How does CVE-2020-14059 impact Squid?
CVE-2020-14059 can cause a Denial of Service in Squid 5.x before 5.0.3 due to an Incorrect Synchronization issue.
What is the severity of CVE-2020-14059?
The severity of CVE-2020-14059 is medium, with a severity value of 6.5.
Which version of Squid is affected by CVE-2020-14059?
Squid versions before 5.0.3, specifically 5.x, are affected by CVE-2020-14059.
How can I fix CVE-2020-14059?
To fix CVE-2020-14059, it is recommended to upgrade to Squid 5.0.3 or later.