Логотип exploitDog
bind:CVE-2026-32748
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2026-32748

Количество 6

Количество 6

ubuntu логотип

CVE-2026-32748

13 дней назад

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-32748

13 дней назад

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-32748

13 дней назад

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2026-32748

12 дней назад

Squid has Denial of Service in ICP Response handling

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-32748

13 дней назад

Squid is a caching proxy for the Web. Prior to version 7.5, due to pre ...

CVSS3: 7.5
EPSS: Низкий
oracle-oval логотип

ELSA-2026-6301

8 дней назад

ELSA-2026-6301: squid security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-32748

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
1%
Низкий
13 дней назад
redhat логотип
CVE-2026-32748

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
1%
Низкий
13 дней назад
nvd логотип
CVE-2026-32748

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
1%
Низкий
13 дней назад
msrc логотип
CVE-2026-32748

Squid has Denial of Service in ICP Response handling

CVSS3: 7.5
1%
Низкий
12 дней назад
debian логотип
CVE-2026-32748

Squid is a caching proxy for the Web. Prior to version 7.5, due to pre ...

CVSS3: 7.5
1%
Низкий
13 дней назад
oracle-oval логотип
ELSA-2026-6301

ELSA-2026-6301: squid security update (IMPORTANT)

8 дней назад

Уязвимостей на страницу