Логотип exploitDog
bind:"CVE-2023-5824" OR bind:"CVE-2025-54574" OR bind:"CVE-2023-49288"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2023-5824" OR bind:"CVE-2025-54574" OR bind:"CVE-2023-49288"

Количество 22

Количество 22

oracle-oval логотип

ELSA-2023-7465

почти 2 года назад

ELSA-2023-7465: squid security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2023-5824

около 2 лет назад

A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall or crash of the worker process when a large header is retrieved from the disk cache, resulting in a denial of service.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2023-5824

около 2 лет назад

A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall or crash of the worker process when a large header is retrieved from the disk cache, resulting in a denial of service.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2023-5824

около 2 лет назад

A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall or crash of the worker process when a large header is retrieved from the disk cache, resulting in a denial of service.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2023-5824

2 месяца назад

Squid: dos against http and https

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2023-5824

около 2 лет назад

A flaw was found in Squid. The limits applied for validation of HTTP r ...

CVSS3: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2023-7668

почти 2 года назад

ELSA-2023-7668: squid:4 security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2023-08061

около 2 лет назад

Уязвимость прокси-сервера Squid, связана с неправильным обращением с исключительными условиями и неконтролируемым потреблением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2023-49288

почти 2 года назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Affected versions of squid are subject to a a Use-After-Free bug which can lead to a Denial of Service attack via collapsed forwarding. All versions of Squid from 3.5 up to and including 5.9 configured with "collapsed_forwarding on" are vulnerable. Configurations with "collapsed_forwarding off" or without a "collapsed_forwarding" directive are not vulnerable. This bug is fixed by Squid version 6.0.1. Users are advised to upgrade. Users unable to upgrade should remove all collapsed_forwarding lines from their squid.conf.

CVSS3: 8.6
EPSS: Низкий
redhat логотип

CVE-2023-49288

почти 2 года назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Affected versions of squid are subject to a a Use-After-Free bug which can lead to a Denial of Service attack via collapsed forwarding. All versions of Squid from 3.5 up to and including 5.9 configured with "collapsed_forwarding on" are vulnerable. Configurations with "collapsed_forwarding off" or without a "collapsed_forwarding" directive are not vulnerable. This bug is fixed by Squid version 6.0.1. Users are advised to upgrade. Users unable to upgrade should remove all collapsed_forwarding lines from their squid.conf.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2023-49288

почти 2 года назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Affected versions of squid are subject to a a Use-After-Free bug which can lead to a Denial of Service attack via collapsed forwarding. All versions of Squid from 3.5 up to and including 5.9 configured with "collapsed_forwarding on" are vulnerable. Configurations with "collapsed_forwarding off" or without a "collapsed_forwarding" directive are not vulnerable. This bug is fixed by Squid version 6.0.1. Users are advised to upgrade. Users unable to upgrade should remove all collapsed_forwarding lines from their squid.conf.

CVSS3: 8.6
EPSS: Низкий
debian логотип

CVE-2023-49288

почти 2 года назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and ...

CVSS3: 8.6
EPSS: Низкий
ubuntu логотип

CVE-2025-54574

3 месяца назад

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To work around this issue, disable URN access permissions.

CVSS3: 9.3
EPSS: Низкий
redhat логотип

CVE-2025-54574

3 месяца назад

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To work around this issue, disable URN access permissions.

CVSS3: 8.9
EPSS: Низкий
nvd логотип

CVE-2025-54574

3 месяца назад

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To work around this issue, disable URN access permissions.

CVSS3: 9.3
EPSS: Низкий
debian логотип

CVE-2025-54574

3 месяца назад

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid ...

CVSS3: 9.3
EPSS: Низкий
redos логотип

ROS-20231115-01

почти 2 года назад

Множественные уязвимости squid

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2023-09004

почти 2 года назад

Уязвимость компонента Collapsed Forwarding Handler прокси-сервера Squid, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2025-09345

3 месяца назад

Уязвимость прокси-сервера Squid, связанная с переполнением буфера в динамической памяти при обработке URN-заголовков, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.3
EPSS: Низкий
redos логотип

ROS-20250806-01

3 месяца назад

Уязвимость squid

CVSS3: 9.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2023-7465

ELSA-2023-7465: squid security update (IMPORTANT)

почти 2 года назад
ubuntu логотип
CVE-2023-5824

A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall or crash of the worker process when a large header is retrieved from the disk cache, resulting in a denial of service.

CVSS3: 7.5
2%
Низкий
около 2 лет назад
redhat логотип
CVE-2023-5824

A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall or crash of the worker process when a large header is retrieved from the disk cache, resulting in a denial of service.

CVSS3: 7.5
2%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-5824

A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall or crash of the worker process when a large header is retrieved from the disk cache, resulting in a denial of service.

CVSS3: 7.5
2%
Низкий
около 2 лет назад
msrc логотип
CVE-2023-5824

Squid: dos against http and https

CVSS3: 7.5
2%
Низкий
2 месяца назад
debian логотип
CVE-2023-5824

A flaw was found in Squid. The limits applied for validation of HTTP r ...

CVSS3: 7.5
2%
Низкий
около 2 лет назад
oracle-oval логотип
ELSA-2023-7668

ELSA-2023-7668: squid:4 security update (IMPORTANT)

почти 2 года назад
fstec логотип
BDU:2023-08061

Уязвимость прокси-сервера Squid, связана с неправильным обращением с исключительными условиями и неконтролируемым потреблением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
2%
Низкий
около 2 лет назад
ubuntu логотип
CVE-2023-49288

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Affected versions of squid are subject to a a Use-After-Free bug which can lead to a Denial of Service attack via collapsed forwarding. All versions of Squid from 3.5 up to and including 5.9 configured with "collapsed_forwarding on" are vulnerable. Configurations with "collapsed_forwarding off" or without a "collapsed_forwarding" directive are not vulnerable. This bug is fixed by Squid version 6.0.1. Users are advised to upgrade. Users unable to upgrade should remove all collapsed_forwarding lines from their squid.conf.

CVSS3: 8.6
2%
Низкий
почти 2 года назад
redhat логотип
CVE-2023-49288

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Affected versions of squid are subject to a a Use-After-Free bug which can lead to a Denial of Service attack via collapsed forwarding. All versions of Squid from 3.5 up to and including 5.9 configured with "collapsed_forwarding on" are vulnerable. Configurations with "collapsed_forwarding off" or without a "collapsed_forwarding" directive are not vulnerable. This bug is fixed by Squid version 6.0.1. Users are advised to upgrade. Users unable to upgrade should remove all collapsed_forwarding lines from their squid.conf.

CVSS3: 7.5
2%
Низкий
почти 2 года назад
nvd логотип
CVE-2023-49288

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Affected versions of squid are subject to a a Use-After-Free bug which can lead to a Denial of Service attack via collapsed forwarding. All versions of Squid from 3.5 up to and including 5.9 configured with "collapsed_forwarding on" are vulnerable. Configurations with "collapsed_forwarding off" or without a "collapsed_forwarding" directive are not vulnerable. This bug is fixed by Squid version 6.0.1. Users are advised to upgrade. Users unable to upgrade should remove all collapsed_forwarding lines from their squid.conf.

CVSS3: 8.6
2%
Низкий
почти 2 года назад
debian логотип
CVE-2023-49288

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and ...

CVSS3: 8.6
2%
Низкий
почти 2 года назад
ubuntu логотип
CVE-2025-54574

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To work around this issue, disable URN access permissions.

CVSS3: 9.3
1%
Низкий
3 месяца назад
redhat логотип
CVE-2025-54574

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To work around this issue, disable URN access permissions.

CVSS3: 8.9
1%
Низкий
3 месяца назад
nvd логотип
CVE-2025-54574

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To work around this issue, disable URN access permissions.

CVSS3: 9.3
1%
Низкий
3 месяца назад
debian логотип
CVE-2025-54574

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid ...

CVSS3: 9.3
1%
Низкий
3 месяца назад
redos логотип
ROS-20231115-01

Множественные уязвимости squid

CVSS3: 7.5
почти 2 года назад
fstec логотип
BDU:2023-09004

Уязвимость компонента Collapsed Forwarding Handler прокси-сервера Squid, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
2%
Низкий
почти 2 года назад
fstec логотип
BDU:2025-09345

Уязвимость прокси-сервера Squid, связанная с переполнением буфера в динамической памяти при обработке URN-заголовков, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.3
1%
Низкий
3 месяца назад
redos логотип
ROS-20250806-01

Уязвимость squid

CVSS3: 9.3
1%
Низкий
3 месяца назад

Уязвимостей на страницу