Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 14

Количество 14

ubuntu логотип

CVE-2026-32748

6 месяцев назад

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-32748

6 месяцев назад

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-32748

6 месяцев назад

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2026-32748

6 месяцев назад

Squid has Denial of Service in ICP Response handling

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-32748

6 месяцев назад

Squid is a caching proxy for the Web. Prior to version 7.5, due to pre ...

CVSS3: 7.5
EPSS: Низкий
redos логотип

ROS-20260508-80-0017

4 месяца назад

Уязвимость squid

CVSS3: 8.6
EPSS: Низкий
fstec логотип

BDU:2026-07191

6 месяцев назад

Уязвимость прокси-сервера Squid, связанная с неправильной блокировкой ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
rocky логотип

RLSA-2026:8317

5 месяцев назад

Important: squid:4 security update

EPSS: Низкий
rocky логотип

RLSA-2026:8119

5 месяцев назад

Important: squid security update

EPSS: Низкий
rocky логотип

RLSA-2026:6301

5 месяцев назад

Important: squid security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-8880

4 месяца назад

ELSA-2026-8880: squid security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-8317

5 месяцев назад

ELSA-2026-8317: squid:4 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-8119

5 месяцев назад

ELSA-2026-8119: squid security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-6301

6 месяцев назад

ELSA-2026-6301: squid security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-32748

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
9%
Низкий
6 месяцев назад
redhat логотип
CVE-2026-32748

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
9%
Низкий
6 месяцев назад
nvd логотип
CVE-2026-32748

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
9%
Низкий
6 месяцев назад
msrc логотип
CVE-2026-32748

Squid has Denial of Service in ICP Response handling

CVSS3: 7.5
9%
Низкий
6 месяцев назад
debian логотип
CVE-2026-32748

Squid is a caching proxy for the Web. Prior to version 7.5, due to pre ...

CVSS3: 7.5
9%
Низкий
6 месяцев назад
redos логотип
ROS-20260508-80-0017

Уязвимость squid

CVSS3: 8.6
9%
Низкий
4 месяца назад
fstec логотип
BDU:2026-07191

Уязвимость прокси-сервера Squid, связанная с неправильной блокировкой ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
9%
Низкий
6 месяцев назад
rocky логотип
RLSA-2026:8317

Important: squid:4 security update

5 месяцев назад
rocky логотип
RLSA-2026:8119

Important: squid security update

5 месяцев назад
rocky логотип
RLSA-2026:6301

Important: squid security update

5 месяцев назад
oracle-oval логотип
ELSA-2026-8880

ELSA-2026-8880: squid security update (IMPORTANT)

4 месяца назад
oracle-oval логотип
ELSA-2026-8317

ELSA-2026-8317: squid:4 security update (IMPORTANT)

5 месяцев назад
oracle-oval логотип
ELSA-2026-8119

ELSA-2026-8119: squid security update (IMPORTANT)

5 месяцев назад
oracle-oval логотип
ELSA-2026-6301

ELSA-2026-6301: squid security update (IMPORTANT)

6 месяцев назад

Уязвимостей на страницу