Логотип exploitDog
bind:"CVE-2023-5824" OR bind:"CVE-2025-54574" OR bind:"CVE-2023-49288"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2023-5824" OR bind:"CVE-2025-54574" OR bind:"CVE-2023-49288"

Количество 23

Количество 23

oracle-oval логотип

ELSA-2023-7465

около 2 лет назад

ELSA-2023-7465: squid security update (IMPORTANT)

EPSS: Низкий
ubuntu логотип

CVE-2023-5824

около 2 лет назад

A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall or crash of the worker process when a large header is retrieved from the disk cache, resulting in a denial of service.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2023-5824

около 2 лет назад

A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall or crash of the worker process when a large header is retrieved from the disk cache, resulting in a denial of service.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2023-5824

около 2 лет назад

A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall or crash of the worker process when a large header is retrieved from the disk cache, resulting in a denial of service.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2023-5824

4 месяца назад

Squid: dos against http and https

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2023-5824

около 2 лет назад

A flaw was found in Squid. The limits applied for validation of HTTP r ...

CVSS3: 7.5
EPSS: Низкий
rocky логотип

RLSA-2023:7668

около 2 лет назад

Important: squid:4 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2023-7668

около 2 лет назад

ELSA-2023-7668: squid:4 security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2023-08061

около 2 лет назад

Уязвимость прокси-сервера Squid, связана с неправильным обращением с исключительными условиями и неконтролируемым потреблением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
ubuntu логотип

CVE-2023-49288

около 2 лет назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Affected versions of squid are subject to a a Use-After-Free bug which can lead to a Denial of Service attack via collapsed forwarding. All versions of Squid from 3.5 up to and including 5.9 configured with "collapsed_forwarding on" are vulnerable. Configurations with "collapsed_forwarding off" or without a "collapsed_forwarding" directive are not vulnerable. This bug is fixed by Squid version 6.0.1. Users are advised to upgrade. Users unable to upgrade should remove all collapsed_forwarding lines from their squid.conf.

CVSS3: 8.6
EPSS: Низкий
redhat логотип

CVE-2023-49288

около 2 лет назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Affected versions of squid are subject to a a Use-After-Free bug which can lead to a Denial of Service attack via collapsed forwarding. All versions of Squid from 3.5 up to and including 5.9 configured with "collapsed_forwarding on" are vulnerable. Configurations with "collapsed_forwarding off" or without a "collapsed_forwarding" directive are not vulnerable. This bug is fixed by Squid version 6.0.1. Users are advised to upgrade. Users unable to upgrade should remove all collapsed_forwarding lines from their squid.conf.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2023-49288

около 2 лет назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Affected versions of squid are subject to a a Use-After-Free bug which can lead to a Denial of Service attack via collapsed forwarding. All versions of Squid from 3.5 up to and including 5.9 configured with "collapsed_forwarding on" are vulnerable. Configurations with "collapsed_forwarding off" or without a "collapsed_forwarding" directive are not vulnerable. This bug is fixed by Squid version 6.0.1. Users are advised to upgrade. Users unable to upgrade should remove all collapsed_forwarding lines from their squid.conf.

CVSS3: 8.6
EPSS: Низкий
debian логотип

CVE-2023-49288

около 2 лет назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and ...

CVSS3: 8.6
EPSS: Низкий
ubuntu логотип

CVE-2025-54574

6 месяцев назад

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To work around this issue, disable URN access permissions.

CVSS3: 9.3
EPSS: Низкий
redhat логотип

CVE-2025-54574

6 месяцев назад

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To work around this issue, disable URN access permissions.

CVSS3: 8.9
EPSS: Низкий
nvd логотип

CVE-2025-54574

6 месяцев назад

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To work around this issue, disable URN access permissions.

CVSS3: 9.3
EPSS: Низкий
debian логотип

CVE-2025-54574

6 месяцев назад

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid ...

CVSS3: 9.3
EPSS: Низкий
fstec логотип

BDU:2023-09004

около 2 лет назад

Уязвимость компонента Collapsed Forwarding Handler прокси-сервера Squid, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2025-09345

6 месяцев назад

Уязвимость прокси-сервера Squid, связанная с переполнением буфера в динамической памяти при обработке URN-заголовков, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.3
EPSS: Низкий
redos логотип

ROS-20231115-01

около 2 лет назад

Множественные уязвимости squid

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2023-7465

ELSA-2023-7465: squid security update (IMPORTANT)

около 2 лет назад
ubuntu логотип
CVE-2023-5824

A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall or crash of the worker process when a large header is retrieved from the disk cache, resulting in a denial of service.

CVSS3: 7.5
2%
Низкий
около 2 лет назад
redhat логотип
CVE-2023-5824

A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall or crash of the worker process when a large header is retrieved from the disk cache, resulting in a denial of service.

CVSS3: 7.5
2%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-5824

A flaw was found in Squid. The limits applied for validation of HTTP response headers are applied before caching. However, Squid may grow a cached HTTP response header beyond the configured maximum size, causing a stall or crash of the worker process when a large header is retrieved from the disk cache, resulting in a denial of service.

CVSS3: 7.5
2%
Низкий
около 2 лет назад
msrc логотип
CVE-2023-5824

Squid: dos against http and https

CVSS3: 7.5
2%
Низкий
4 месяца назад
debian логотип
CVE-2023-5824

A flaw was found in Squid. The limits applied for validation of HTTP r ...

CVSS3: 7.5
2%
Низкий
около 2 лет назад
rocky логотип
RLSA-2023:7668

Important: squid:4 security update

2%
Низкий
около 2 лет назад
oracle-oval логотип
ELSA-2023-7668

ELSA-2023-7668: squid:4 security update (IMPORTANT)

около 2 лет назад
fstec логотип
BDU:2023-08061

Уязвимость прокси-сервера Squid, связана с неправильным обращением с исключительными условиями и неконтролируемым потреблением ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
2%
Низкий
около 2 лет назад
ubuntu логотип
CVE-2023-49288

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Affected versions of squid are subject to a a Use-After-Free bug which can lead to a Denial of Service attack via collapsed forwarding. All versions of Squid from 3.5 up to and including 5.9 configured with "collapsed_forwarding on" are vulnerable. Configurations with "collapsed_forwarding off" or without a "collapsed_forwarding" directive are not vulnerable. This bug is fixed by Squid version 6.0.1. Users are advised to upgrade. Users unable to upgrade should remove all collapsed_forwarding lines from their squid.conf.

CVSS3: 8.6
3%
Низкий
около 2 лет назад
redhat логотип
CVE-2023-49288

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Affected versions of squid are subject to a a Use-After-Free bug which can lead to a Denial of Service attack via collapsed forwarding. All versions of Squid from 3.5 up to and including 5.9 configured with "collapsed_forwarding on" are vulnerable. Configurations with "collapsed_forwarding off" or without a "collapsed_forwarding" directive are not vulnerable. This bug is fixed by Squid version 6.0.1. Users are advised to upgrade. Users unable to upgrade should remove all collapsed_forwarding lines from their squid.conf.

CVSS3: 7.5
3%
Низкий
около 2 лет назад
nvd логотип
CVE-2023-49288

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Affected versions of squid are subject to a a Use-After-Free bug which can lead to a Denial of Service attack via collapsed forwarding. All versions of Squid from 3.5 up to and including 5.9 configured with "collapsed_forwarding on" are vulnerable. Configurations with "collapsed_forwarding off" or without a "collapsed_forwarding" directive are not vulnerable. This bug is fixed by Squid version 6.0.1. Users are advised to upgrade. Users unable to upgrade should remove all collapsed_forwarding lines from their squid.conf.

CVSS3: 8.6
3%
Низкий
около 2 лет назад
debian логотип
CVE-2023-49288

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and ...

CVSS3: 8.6
3%
Низкий
около 2 лет назад
ubuntu логотип
CVE-2025-54574

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To work around this issue, disable URN access permissions.

CVSS3: 9.3
1%
Низкий
6 месяцев назад
redhat логотип
CVE-2025-54574

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To work around this issue, disable URN access permissions.

CVSS3: 8.9
1%
Низкий
6 месяцев назад
nvd логотип
CVE-2025-54574

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To work around this issue, disable URN access permissions.

CVSS3: 9.3
1%
Низкий
6 месяцев назад
debian логотип
CVE-2025-54574

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid ...

CVSS3: 9.3
1%
Низкий
6 месяцев назад
fstec логотип
BDU:2023-09004

Уязвимость компонента Collapsed Forwarding Handler прокси-сервера Squid, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
3%
Низкий
около 2 лет назад
fstec логотип
BDU:2025-09345

Уязвимость прокси-сервера Squid, связанная с переполнением буфера в динамической памяти при обработке URN-заголовков, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.3
1%
Низкий
6 месяцев назад
redos логотип
ROS-20231115-01

Множественные уязвимости squid

CVSS3: 7.5
около 2 лет назад

Уязвимостей на страницу