Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2014-0128

Опубликовано: 14 апр. 2014
Источник: nvd
CVSS2: 5
EPSS Средний

Описание

Squid 3.1 before 3.3.12 and 3.4 before 3.4.4, when SSL-Bump is enabled, allows remote attackers to cause a denial of service (assertion failure) via a crafted range request, related to state management.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:squid-cache:squid:3.1:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.1:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.2:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.3:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.4:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.5:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.6:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.7:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.8:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.9:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.10:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.11:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.12:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.13:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.14:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.15:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.16:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.17:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.0.18:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.1:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.2:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.3:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.4:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.5:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.5.1:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.6:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.7:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.8:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.9:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.10:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.11:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.12:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.13:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.14:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.1.15:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.1:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.2:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.3:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.4:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.5:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.6:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.7:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.8:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.9:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.10:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.11:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.12:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.13:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.14:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.15:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.16:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.17:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.18:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.0.19:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.1:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.2:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.3:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.4:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.5:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.6:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.7:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.8:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.9:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.10:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.11:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.2.12:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.3.0:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.3.0.2:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.3.0.3:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.3.1:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.3.2:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.3.3:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.3.4:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.3.5:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.3.6:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.3.7:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.3.8:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.3.9:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.3.10:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.3.11:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.4.0.1:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.4.0.2:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.4.0.3:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.4.1:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.4.2:*:*:*:*:*:*:*
cpe:2.3:a:squid-cache:squid:3.4.3:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:o:opensuse:opensuse:11.4:*:*:*:*:*:*:*

EPSS

Процентиль: 97%
0.42714
Средний

5 Medium

CVSS2

Дефекты

CWE-20

Связанные уязвимости

ubuntu
больше 11 лет назад

Squid 3.1 before 3.3.12 and 3.4 before 3.4.4, when SSL-Bump is enabled, allows remote attackers to cause a denial of service (assertion failure) via a crafted range request, related to state management.

redhat
больше 11 лет назад

Squid 3.1 before 3.3.12 and 3.4 before 3.4.4, when SSL-Bump is enabled, allows remote attackers to cause a denial of service (assertion failure) via a crafted range request, related to state management.

debian
больше 11 лет назад

Squid 3.1 before 3.3.12 and 3.4 before 3.4.4, when SSL-Bump is enabled ...

github
больше 3 лет назад

Squid 3.1 before 3.3.12 and 3.4 before 3.4.4, when SSL-Bump is enabled, allows remote attackers to cause a denial of service (assertion failure) via a crafted range request, related to state management.

oracle-oval
около 11 лет назад

ELSA-2014-0597: squid security update (MODERATE)

EPSS

Процентиль: 97%
0.42714
Средний

5 Medium

CVSS2

Дефекты

CWE-20