Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2009-0478

Опубликовано: 08 фев. 2009
Источник: ubuntu
Приоритет: medium
EPSS Высокий
CVSS2: 5

Описание

Squid 2.7 to 2.7.STABLE5, 3.0 to 3.0.STABLE12, and 3.1 to 3.1.0.4 allows remote attackers to cause a denial of service via an HTTP request with an invalid version number, which triggers a reachable assertion in (1) HttpMsg.c and (2) HttpStatusLine.c.

РелизСтатусПримечание
dapper

not-affected

devel

not-affected

2.7.STABLE3-4.1ubuntu1
gutsy

not-affected

hardy

not-affected

intrepid

released

2.7.STABLE3-1ubuntu2.1
jaunty

not-affected

2.7.STABLE3-4.1ubuntu1
karmic

not-affected

2.7.STABLE3-4.1ubuntu1
lucid

not-affected

2.7.STABLE3-4.1ubuntu1
maverick

not-affected

2.7.STABLE3-4.1ubuntu1
natty

not-affected

2.7.STABLE3-4.1ubuntu1

Показывать по

РелизСтатусПримечание
dapper

DNE

devel

not-affected

3.0.STABLE8-3
gutsy

ignored

end of life, was needed
hardy

ignored

end of life
intrepid

ignored

end of life, was needed
jaunty

not-affected

3.0.STABLE8-3
karmic

not-affected

3.0.STABLE8-3
lucid

not-affected

3.0.STABLE8-3
maverick

not-affected

3.0.STABLE8-3
natty

not-affected

3.0.STABLE8-3

Показывать по

EPSS

Процентиль: 99%
0.77407
Высокий

5 Medium

CVSS2

Связанные уязвимости

redhat
почти 17 лет назад

Squid 2.7 to 2.7.STABLE5, 3.0 to 3.0.STABLE12, and 3.1 to 3.1.0.4 allows remote attackers to cause a denial of service via an HTTP request with an invalid version number, which triggers a reachable assertion in (1) HttpMsg.c and (2) HttpStatusLine.c.

nvd
почти 17 лет назад

Squid 2.7 to 2.7.STABLE5, 3.0 to 3.0.STABLE12, and 3.1 to 3.1.0.4 allows remote attackers to cause a denial of service via an HTTP request with an invalid version number, which triggers a reachable assertion in (1) HttpMsg.c and (2) HttpStatusLine.c.

debian
почти 17 лет назад

Squid 2.7 to 2.7.STABLE5, 3.0 to 3.0.STABLE12, and 3.1 to 3.1.0.4 allo ...

github
больше 3 лет назад

Squid 2.7 to 2.7.STABLE5, 3.0 to 3.0.STABLE12, and 3.1 to 3.1.0.4 allows remote attackers to cause a denial of service via an HTTP request with an invalid version number, which triggers a reachable assertion in (1) HttpMsg.c and (2) HttpStatusLine.c.

EPSS

Процентиль: 99%
0.77407
Высокий

5 Medium

CVSS2