Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-45802

Опубликовано: 28 окт. 2024
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS3: 7.5

Описание

Squid is an open source caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to Input Validation, Premature Release of Resource During Expected Lifetime, and Missing Release of Resource after Effective Lifetime bugs, Squid is vulnerable to Denial of Service attacks by a trusted server against all clients using the proxy. This bug is fixed in the default build configuration of Squid version 6.10.

РелизСтатусПримечание
devel

not-affected

6.13-1ubuntu1
esm-infra/focal

ignored

see notes
focal

ignored

end of standard support, was ignored [see notes]
jammy

ignored

see notes
noble

ignored

see notes
oracular

ignored

end of life, was ignored [see notes]
plucky

not-affected

6.13-1ubuntu1
questing

not-affected

6.13-1ubuntu1
resolute

not-affected

6.13-1ubuntu1
upstream

released

6.12-1

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/xenial

needs-triage

esm-infra/bionic

needs-triage

esm-infra/focal

DNE

esm-infra/xenial

ignored

end of ESM support, was needs-triage
focal

DNE

jammy

DNE

noble

DNE

oracular

DNE

plucky

DNE

Показывать по

EPSS

Процентиль: 99%
0.47227
Средний

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
почти 2 года назад

Squid is an open source caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to Input Validation, Premature Release of Resource During Expected Lifetime, and Missing Release of Resource after Effective Lifetime bugs, Squid is vulnerable to Denial of Service attacks by a trusted server against all clients using the proxy. This bug is fixed in the default build configuration of Squid version 6.10.

CVSS3: 7.5
nvd
почти 2 года назад

Squid is an open source caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to Input Validation, Premature Release of Resource During Expected Lifetime, and Missing Release of Resource after Effective Lifetime bugs, Squid is vulnerable to Denial of Service attacks by a trusted server against all clients using the proxy. This bug is fixed in the default build configuration of Squid version 6.10.

CVSS3: 7.5
debian
почти 2 года назад

Squid is an open source caching proxy for the Web supporting HTTP, HTT ...

rocky
больше 1 года назад

Important: squid security update

oracle-oval
больше 1 года назад

ELSA-2024-9738: squid security update (IMPORTANT)

EPSS

Процентиль: 99%
0.47227
Средний

7.5 High

CVSS3