Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 13

Количество 13

fstec логотип

BDU:2023-08827

почти 3 года назад

Уязвимость функции follow_x_forwarded_for() прокси-сервера Squid, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 8.6
EPSS: Средний
redos логотип

ROS-20240812-05

почти 2 года назад

Уязвимость squid

CVSS3: 8.6
EPSS: Средний
ubuntu логотип

CVE-2023-50269

больше 2 лет назад

Squid is a caching proxy for the Web. Due to an Uncontrolled Recursion bug in versions 2.6 through 2.7.STABLE9, versions 3.1 through 5.9, and versions 6.0.1 through 6.5, Squid may be vulnerable to a Denial of Service attack against HTTP Request parsing. This problem allows a remote client to perform Denial of Service attack by sending a large X-Forwarded-For header when the follow_x_forwarded_for feature is configured. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid's patch archives.

CVSS3: 8.6
EPSS: Средний
redhat логотип

CVE-2023-50269

больше 2 лет назад

Squid is a caching proxy for the Web. Due to an Uncontrolled Recursion bug in versions 2.6 through 2.7.STABLE9, versions 3.1 through 5.9, and versions 6.0.1 through 6.5, Squid may be vulnerable to a Denial of Service attack against HTTP Request parsing. This problem allows a remote client to perform Denial of Service attack by sending a large X-Forwarded-For header when the follow_x_forwarded_for feature is configured. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid's patch archives.

CVSS3: 7.5
EPSS: Средний
nvd логотип

CVE-2023-50269

больше 2 лет назад

Squid is a caching proxy for the Web. Due to an Uncontrolled Recursion bug in versions 2.6 through 2.7.STABLE9, versions 3.1 through 5.9, and versions 6.0.1 through 6.5, Squid may be vulnerable to a Denial of Service attack against HTTP Request parsing. This problem allows a remote client to perform Denial of Service attack by sending a large X-Forwarded-For header when the follow_x_forwarded_for feature is configured. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid's patch archives.

CVSS3: 8.6
EPSS: Средний
debian логотип

CVE-2023-50269

больше 2 лет назад

Squid is a caching proxy for the Web. Due to an Uncontrolled Recursion ...

CVSS3: 8.6
EPSS: Средний
suse-cvrf логотип

SUSE-SU-2024:0455-1

больше 2 лет назад

Security update for squid

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0298-1

больше 2 лет назад

Security update for squid

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0296-1

больше 2 лет назад

Security update for squid

EPSS: Низкий
rocky логотип

RLSA-2024:1375

около 1 года назад

Important: squid:4 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-1376

больше 2 лет назад

ELSA-2024-1376: squid security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-1375

больше 2 лет назад

ELSA-2024-1375: squid:4 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-1787

больше 2 лет назад

ELSA-2024-1787: squid security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2023-08827

Уязвимость функции follow_x_forwarded_for() прокси-сервера Squid, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 8.6
58%
Средний
почти 3 года назад
redos логотип
ROS-20240812-05

Уязвимость squid

CVSS3: 8.6
58%
Средний
почти 2 года назад
ubuntu логотип
CVE-2023-50269

Squid is a caching proxy for the Web. Due to an Uncontrolled Recursion bug in versions 2.6 through 2.7.STABLE9, versions 3.1 through 5.9, and versions 6.0.1 through 6.5, Squid may be vulnerable to a Denial of Service attack against HTTP Request parsing. This problem allows a remote client to perform Denial of Service attack by sending a large X-Forwarded-For header when the follow_x_forwarded_for feature is configured. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid's patch archives.

CVSS3: 8.6
58%
Средний
больше 2 лет назад
redhat логотип
CVE-2023-50269

Squid is a caching proxy for the Web. Due to an Uncontrolled Recursion bug in versions 2.6 through 2.7.STABLE9, versions 3.1 through 5.9, and versions 6.0.1 through 6.5, Squid may be vulnerable to a Denial of Service attack against HTTP Request parsing. This problem allows a remote client to perform Denial of Service attack by sending a large X-Forwarded-For header when the follow_x_forwarded_for feature is configured. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid's patch archives.

CVSS3: 7.5
58%
Средний
больше 2 лет назад
nvd логотип
CVE-2023-50269

Squid is a caching proxy for the Web. Due to an Uncontrolled Recursion bug in versions 2.6 through 2.7.STABLE9, versions 3.1 through 5.9, and versions 6.0.1 through 6.5, Squid may be vulnerable to a Denial of Service attack against HTTP Request parsing. This problem allows a remote client to perform Denial of Service attack by sending a large X-Forwarded-For header when the follow_x_forwarded_for feature is configured. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid's patch archives.

CVSS3: 8.6
58%
Средний
больше 2 лет назад
debian логотип
CVE-2023-50269

Squid is a caching proxy for the Web. Due to an Uncontrolled Recursion ...

CVSS3: 8.6
58%
Средний
больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:0455-1

Security update for squid

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:0298-1

Security update for squid

больше 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:0296-1

Security update for squid

больше 2 лет назад
rocky логотип
RLSA-2024:1375

Important: squid:4 security update

около 1 года назад
oracle-oval логотип
ELSA-2024-1376

ELSA-2024-1376: squid security update (IMPORTANT)

больше 2 лет назад
oracle-oval логотип
ELSA-2024-1375

ELSA-2024-1375: squid:4 security update (IMPORTANT)

больше 2 лет назад
oracle-oval логотип
ELSA-2024-1787

ELSA-2024-1787: squid security update (IMPORTANT)

больше 2 лет назад

Уязвимостей на страницу