Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 13

Количество 13

ubuntu логотип

CVE-2026-32748

4 месяца назад

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
EPSS: Низкий
redhat логотип

CVE-2026-32748

4 месяца назад

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2026-32748

4 месяца назад

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
EPSS: Низкий
msrc логотип

CVE-2026-32748

4 месяца назад

Squid has Denial of Service in ICP Response handling

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2026-32748

4 месяца назад

Squid is a caching proxy for the Web. Prior to version 7.5, due to pre ...

CVSS3: 7.5
EPSS: Низкий
fstec логотип

BDU:2026-07191

4 месяца назад

Уязвимость прокси-сервера Squid, связанная с неправильной блокировкой ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
rocky логотип

RLSA-2026:8317

4 месяца назад

Important: squid:4 security update

EPSS: Низкий
rocky логотип

RLSA-2026:8119

4 месяца назад

Important: squid security update

EPSS: Низкий
rocky логотип

RLSA-2026:6301

4 месяца назад

Important: squid security update

EPSS: Низкий
oracle-oval логотип

ELSA-2026-8880

2 месяца назад

ELSA-2026-8880: squid security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-8317

4 месяца назад

ELSA-2026-8317: squid:4 security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-8119

4 месяца назад

ELSA-2026-8119: squid security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2026-6301

4 месяца назад

ELSA-2026-6301: squid security update (IMPORTANT)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2026-32748

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
9%
Низкий
4 месяца назад
redhat логотип
CVE-2026-32748

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
9%
Низкий
4 месяца назад
nvd логотип
CVE-2026-32748

Squid is a caching proxy for the Web. Prior to version 7.5, due to premature release of resource during expected lifetime and heap Use-After-Free bugs, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. This bug is fixed in Squid version 7.5.

CVSS3: 7.5
9%
Низкий
4 месяца назад
msrc логотип
CVE-2026-32748

Squid has Denial of Service in ICP Response handling

CVSS3: 7.5
9%
Низкий
4 месяца назад
debian логотип
CVE-2026-32748

Squid is a caching proxy for the Web. Prior to version 7.5, due to pre ...

CVSS3: 7.5
9%
Низкий
4 месяца назад
fstec логотип
BDU:2026-07191

Уязвимость прокси-сервера Squid, связанная с неправильной блокировкой ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
9%
Низкий
4 месяца назад
rocky логотип
RLSA-2026:8317

Important: squid:4 security update

4 месяца назад
rocky логотип
RLSA-2026:8119

Important: squid security update

4 месяца назад
rocky логотип
RLSA-2026:6301

Important: squid security update

4 месяца назад
oracle-oval логотип
ELSA-2026-8880

ELSA-2026-8880: squid security update (IMPORTANT)

2 месяца назад
oracle-oval логотип
ELSA-2026-8317

ELSA-2026-8317: squid:4 security update (IMPORTANT)

4 месяца назад
oracle-oval логотип
ELSA-2026-8119

ELSA-2026-8119: squid security update (IMPORTANT)

4 месяца назад
oracle-oval логотип
ELSA-2026-6301

ELSA-2026-6301: squid security update (IMPORTANT)

4 месяца назад

Уязвимостей на страницу