Squid contains a flaw in the httpMakeVaryMark() function in http.cc that may allow a remote denial of service. The issue is triggered during the handling of a malformed X-HEADSHOT header. This may allow a remote attacker to crash the program.
Disclosure Timeline:
Disclosure Date :2013-03-05
Exploit Publish Date :2013-03-05