Логотип exploitDog
bind:"CVE-2024-23638" OR bind:"CVE-2024-37894"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2024-23638" OR bind:"CVE-2024-37894"

Количество 21

Количество 21

rocky логотип

RLSA-2024:4861

11 месяцев назад

Moderate: squid security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-4861

11 месяцев назад

ELSA-2024-4861: squid security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2024-37894

12 месяцев назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when assigning ESI variables, Squid is susceptible to a Memory Corruption error. This error can lead to a Denial of Service attack.

CVSS3: 6.3
EPSS: Низкий
redhat логотип

CVE-2024-37894

12 месяцев назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when assigning ESI variables, Squid is susceptible to a Memory Corruption error. This error can lead to a Denial of Service attack.

CVSS3: 6.3
EPSS: Низкий
nvd логотип

CVE-2024-37894

12 месяцев назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when assigning ESI variables, Squid is susceptible to a Memory Corruption error. This error can lead to a Denial of Service attack.

CVSS3: 6.3
EPSS: Низкий
debian логотип

CVE-2024-37894

12 месяцев назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and ...

CVSS3: 6.3
EPSS: Низкий
ubuntu логотип

CVE-2024-23638

больше 1 года назад

Squid is a caching proxy for the Web. Due to an expired pointer reference bug, Squid prior to version 6.6 is vulnerable to a Denial of Service attack against Cache Manager error responses. This problem allows a trusted client to perform Denial of Service when generating error pages for Client Manager reports. Squid older than 5.0.5 have not been tested and should be assumed to be vulnerable. All Squid-5.x up to and including 5.9 are vulnerable. All Squid-6.x up to and including 6.5 are vulnerable. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid's patch archives. As a workaround, prevent access to Cache Manager using Squid's main access control: `http_access deny manager`.

CVSS3: 6.5
EPSS: Средний
redhat логотип

CVE-2024-23638

больше 1 года назад

Squid is a caching proxy for the Web. Due to an expired pointer reference bug, Squid prior to version 6.6 is vulnerable to a Denial of Service attack against Cache Manager error responses. This problem allows a trusted client to perform Denial of Service when generating error pages for Client Manager reports. Squid older than 5.0.5 have not been tested and should be assumed to be vulnerable. All Squid-5.x up to and including 5.9 are vulnerable. All Squid-6.x up to and including 6.5 are vulnerable. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid's patch archives. As a workaround, prevent access to Cache Manager using Squid's main access control: `http_access deny manager`.

CVSS3: 6.5
EPSS: Средний
nvd логотип

CVE-2024-23638

больше 1 года назад

Squid is a caching proxy for the Web. Due to an expired pointer reference bug, Squid prior to version 6.6 is vulnerable to a Denial of Service attack against Cache Manager error responses. This problem allows a trusted client to perform Denial of Service when generating error pages for Client Manager reports. Squid older than 5.0.5 have not been tested and should be assumed to be vulnerable. All Squid-5.x up to and including 5.9 are vulnerable. All Squid-6.x up to and including 6.5 are vulnerable. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid's patch archives. As a workaround, prevent access to Cache Manager using Squid's main access control: `http_access deny manager`.

CVSS3: 6.5
EPSS: Средний
debian логотип

CVE-2024-23638

больше 1 года назад

Squid is a caching proxy for the Web. Due to an expired pointer refere ...

CVSS3: 6.5
EPSS: Средний
suse-cvrf логотип

SUSE-SU-2024:2270-1

12 месяцев назад

Security update for squid

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2269-1

12 месяцев назад

Security update for squid

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:2268-1

12 месяцев назад

Security update for squid

EPSS: Низкий
fstec логотип

BDU:2024-05070

12 месяцев назад

Уязвимость прокси-сервера Squid, связанная с записью за границами буфера, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.3
EPSS: Низкий
fstec логотип

BDU:2024-00895

больше 1 года назад

Уязвимость прокси-сервера Squid, связанная с разыменованием указателя с истекшим сроком действия, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
EPSS: Средний
redos логотип

ROS-20240729-20

11 месяцев назад

Уязвимость squid

CVSS3: 6.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0455-1

больше 1 года назад

Security update for squid

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0298-1

больше 1 года назад

Security update for squid

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:0296-1

больше 1 года назад

Security update for squid

EPSS: Низкий
redos логотип

ROS-20240329-02

около 1 года назад

Уязвимость squid

CVSS3: 6.5
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2024:4861

Moderate: squid security update

11 месяцев назад
oracle-oval логотип
ELSA-2024-4861

ELSA-2024-4861: squid security update (MODERATE)

11 месяцев назад
ubuntu логотип
CVE-2024-37894

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when assigning ESI variables, Squid is susceptible to a Memory Corruption error. This error can lead to a Denial of Service attack.

CVSS3: 6.3
3%
Низкий
12 месяцев назад
redhat логотип
CVE-2024-37894

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when assigning ESI variables, Squid is susceptible to a Memory Corruption error. This error can lead to a Denial of Service attack.

CVSS3: 6.3
3%
Низкий
12 месяцев назад
nvd логотип
CVE-2024-37894

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when assigning ESI variables, Squid is susceptible to a Memory Corruption error. This error can lead to a Denial of Service attack.

CVSS3: 6.3
3%
Низкий
12 месяцев назад
debian логотип
CVE-2024-37894

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and ...

CVSS3: 6.3
3%
Низкий
12 месяцев назад
ubuntu логотип
CVE-2024-23638

Squid is a caching proxy for the Web. Due to an expired pointer reference bug, Squid prior to version 6.6 is vulnerable to a Denial of Service attack against Cache Manager error responses. This problem allows a trusted client to perform Denial of Service when generating error pages for Client Manager reports. Squid older than 5.0.5 have not been tested and should be assumed to be vulnerable. All Squid-5.x up to and including 5.9 are vulnerable. All Squid-6.x up to and including 6.5 are vulnerable. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid's patch archives. As a workaround, prevent access to Cache Manager using Squid's main access control: `http_access deny manager`.

CVSS3: 6.5
15%
Средний
больше 1 года назад
redhat логотип
CVE-2024-23638

Squid is a caching proxy for the Web. Due to an expired pointer reference bug, Squid prior to version 6.6 is vulnerable to a Denial of Service attack against Cache Manager error responses. This problem allows a trusted client to perform Denial of Service when generating error pages for Client Manager reports. Squid older than 5.0.5 have not been tested and should be assumed to be vulnerable. All Squid-5.x up to and including 5.9 are vulnerable. All Squid-6.x up to and including 6.5 are vulnerable. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid's patch archives. As a workaround, prevent access to Cache Manager using Squid's main access control: `http_access deny manager`.

CVSS3: 6.5
15%
Средний
больше 1 года назад
nvd логотип
CVE-2024-23638

Squid is a caching proxy for the Web. Due to an expired pointer reference bug, Squid prior to version 6.6 is vulnerable to a Denial of Service attack against Cache Manager error responses. This problem allows a trusted client to perform Denial of Service when generating error pages for Client Manager reports. Squid older than 5.0.5 have not been tested and should be assumed to be vulnerable. All Squid-5.x up to and including 5.9 are vulnerable. All Squid-6.x up to and including 6.5 are vulnerable. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid's patch archives. As a workaround, prevent access to Cache Manager using Squid's main access control: `http_access deny manager`.

CVSS3: 6.5
15%
Средний
больше 1 года назад
debian логотип
CVE-2024-23638

Squid is a caching proxy for the Web. Due to an expired pointer refere ...

CVSS3: 6.5
15%
Средний
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:2270-1

Security update for squid

3%
Низкий
12 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2269-1

Security update for squid

3%
Низкий
12 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:2268-1

Security update for squid

3%
Низкий
12 месяцев назад
fstec логотип
BDU:2024-05070

Уязвимость прокси-сервера Squid, связанная с записью за границами буфера, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.3
3%
Низкий
12 месяцев назад
fstec логотип
BDU:2024-00895

Уязвимость прокси-сервера Squid, связанная с разыменованием указателя с истекшим сроком действия, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 6.5
15%
Средний
больше 1 года назад
redos логотип
ROS-20240729-20

Уязвимость squid

CVSS3: 6.3
3%
Низкий
11 месяцев назад
suse-cvrf логотип
SUSE-SU-2024:0455-1

Security update for squid

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0298-1

Security update for squid

больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:0296-1

Security update for squid

больше 1 года назад
redos логотип
ROS-20240329-02

Уязвимость squid

CVSS3: 6.5
15%
Средний
около 1 года назад

Уязвимостей на страницу