MidnightBSD

Advisories for varnish-cache

CVE-2013-4484 MEDIUM

Varnish before 3.0.5 allows remote attackers to cause a denial of service (child-process crash and temporary caching outage) via a GET request with trailing whitespace characters and no URI.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-119,

Products Affected

Vendor Product Version
varnish_cache_project varnish_cache 3.0.1
varnish-cache varnish 2.0.0
varnish_cache_project varnish_cache 2.0.5
varnish_cache_project varnish_cache 2.1.5
varnish_cache_project varnish_cache 3.0.0
varnish_cache_project varnish_cache 3.0.2
varnish_cache_project varnish_cache 2.0.4
varnish_cache_project varnish_cache 2.1.1
varnish_cache_project varnish_cache 2.1.2
varnish_cache_project varnish_cache 2.1.4
varnish_cache_project varnish_cache 2.0.1
varnish_cache_project varnish_cache *
varnish_cache_project varnish_cache 2.0.3
varnish_cache_project varnish_cache 2.1.0
varnish_cache_project varnish_cache 3.0.3
varnish_cache_project varnish_cache 2.0.6
varnish_cache_project varnish_cache 2.0.2
varnish_cache_project varnish_cache 2.1.3
CVE-2017-12425 MEDIUM

An issue was discovered in Varnish HTTP Cache 4.0.1 through 4.0.4, 4.1.0 through 4.1.7, 5.0.0, and 5.1.0 through 5.1.2. A wrong if statement in the varnishd source code means that particular invalid requests from the client can trigger an assert, related to an Integer Overflow. This causes the varnishd worker process to abort and restart, losing the cached contents in the process. An attacker can therefore crash the varnishd worker process on demand and effectively keep it from serving content - a Denial-of-Service attack. The specific source-code filename containing the incorrect statement varies across releases.

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-190,

Products Affected

Vendor Product Version
varnish_cache_project varnish_cache 5.1.2
varnish-software varnish_cache 4.1.3
varnish_cache_project varnish_cache 4.0.2
varnish-software varnish_cache 4.1.4
varnish-software varnish_cache 4.1.0
varnish_cache_project varnish_cache 5.0.0
varnish-software varnish_cache 4.1.1
varnish_cache_project varnish_cache 4.0.4
varnish-software varnish_cache 4.1.5
varnish-cache varnish 4.0.2
varnish_cache_project varnish_cache 4.0.1
varnish_cache_project varnish_cache 4.0.3
varnish-software varnish_cache 4.1.2
varnish_cache_project varnish_cache 5.1.1
varnish-software varnish_cache 4.1.7
varnish_cache_project varnish_cache 5.1.0
varnish-cache varnish 4.0.3
varnish-cache varnish 4.1.0
varnish-software varnish_cache 4.1.6
CVE-2017-8807 MEDIUM

vbf_stp_error in bin/varnishd/cache/cache_fetch.c in Varnish HTTP Cache 4.1.x before 4.1.9 and 5.x before 5.2.1 allows remote attackers to obtain sensitive information from process memory because a VFP_GetStorage buffer is larger than intended in certain circumstances involving -sfile Stevedore transient objects.

CVSS 3.x

Source Score Severity Vector Exploitability Impact
nvd@nist.gov 9.1 CRITICAL CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H 3.9 5.2

CVSS 2.0

Severity: MEDIUM

Problem Type: CWE-119,

Products Affected

Vendor Product Version
debian debian_linux 9.0
varnish_cache_project varnish_cache *
varnish-cache varnish *