CVE-2024-25111
- EPSS 65.25%
- Veröffentlicht 06.03.2024 19:15:07
- Zuletzt bearbeitet 03.11.2025 21:16:07
Squid is a web proxy cache. Starting in version 3.5.27 and prior to version 6.8, Squid may be vulnerable to a Denial of Service attack against HTTP Chunked decoder due to an uncontrolled recursion bug. This problem allows a remote attacker to cause D...
CVE-2024-25617
- EPSS 88.86%
- Veröffentlicht 14.02.2024 21:15:08
- Zuletzt bearbeitet 25.06.2025 20:51:35
Squid is an open source caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to a Collapse of Data into Unsafe Value bug ,Squid may be vulnerable to a Denial of Service attack against HTTP header parsing. This problem allows a remote ...
CVE-2024-23638
- EPSS 60.05%
- Veröffentlicht 24.01.2024 00:15:08
- Zuletzt bearbeitet 21.11.2024 08:58:03
Squid is a caching proxy for the Web. Due to an expired pointer reference bug, Squid prior to version 6.6 is vulnerable to a Denial of Service attack against Cache Manager error responses. This problem allows a trusted client to perform Denial of Ser...
CVE-2023-50269
- EPSS 57.63%
- Veröffentlicht 14.12.2023 18:15:45
- Zuletzt bearbeitet 21.11.2024 08:36:47
Squid is a caching proxy for the Web. Due to an Uncontrolled Recursion bug in versions 2.6 through 2.7.STABLE9, versions 3.1 through 5.9, and versions 6.0.1 through 6.5, Squid may be vulnerable to a Denial of Service attack against HTTP Request parsi...
CVE-2023-49285
- EPSS 88.82%
- Veröffentlicht 04.12.2023 23:15:27
- Zuletzt bearbeitet 21.11.2024 08:33:11
Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to a Buffer Overread bug Squid is vulnerable to a Denial of Service attack against Squid HTTP Message processing. This bug is fixed by Squid version 6.5. Users are advise...
CVE-2023-49286
- EPSS 10.35%
- Veröffentlicht 04.12.2023 23:15:27
- Zuletzt bearbeitet 21.11.2024 08:33:11
Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Incorrect Check of Function Return Value bug Squid is vulnerable to a Denial of Service attack against its Helper process management. This bug is fixed by Squid ver...
CVE-2023-49288
- EPSS 4.78%
- Veröffentlicht 04.12.2023 23:15:27
- Zuletzt bearbeitet 21.11.2024 08:33:11
Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Affected versions of squid are subject to a a Use-After-Free bug which can lead to a Denial of Service attack via collapsed forwarding. All versions of Squid from 3.5 up to a...
CVE-2023-46728
- EPSS 5.96%
- Veröffentlicht 06.11.2023 18:15:08
- Zuletzt bearbeitet 03.11.2025 19:15:42
Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to a NULL pointer dereference bug Squid is vulnerable to a Denial of Service attack against Squid's Gopher gateway. The gopher protocol is always available and enabled in...
CVE-2023-46847
- EPSS 88.35%
- Veröffentlicht 03.11.2023 08:15:08
- Zuletzt bearbeitet 07.08.2026 02:16:30
Squid is vulnerable to a Denial of Service, where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is configured to accept HTTP Digest Authentication.
CVE-2023-46848
- EPSS 10.22%
- Veröffentlicht 03.11.2023 08:15:08
- Zuletzt bearbeitet 21.11.2024 08:29:25
Squid is vulnerable to Denial of Service, where a remote attacker can perform DoS by sending ftp:// URLs in HTTP Request messages or constructing ftp:// URLs from FTP Native input.