Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Tollef Fog Heen

Researcher fromVarnish Software AS
#49121of 53,633
5Total CVSS
Vulnerabilities · 1
PT-2013-1073
5.0
2013-11-01
Varnish · Varnish · CVE-2013-4484
**Name of the Vulnerable Software and Affected Versions** Varnish versions prior to 3.0.5 **Description** The issue allows remote attackers to cause a denial of service, leading to a child-process crash and temporary caching outage. This can be achieved via a GET request with trailing whitespace characters and no URI. **Recommendations** For versions prior to 3.0.5, update to version 3.0.5 or later to resolve the issue. As a temporary workaround, consider restricting access to the Varnish service to minimize the risk of exploitation.