Количество 13
Количество 13
CVE-2026-33526
Squid is a caching proxy for the Web. Prior to version 7.5, due to heap Use-After-Free, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. Version 7.5 contains a patch.
CVE-2026-33526
Squid is a caching proxy for the Web. Prior to version 7.5, due to heap Use-After-Free, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. Version 7.5 contains a patch.
CVE-2026-33526
Squid is a caching proxy for the Web. Prior to version 7.5, due to heap Use-After-Free, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. Version 7.5 contains a patch.
CVE-2026-33526
Squid vulnerable to Denial of Service in ICP Request handling
CVE-2026-33526
Squid is a caching proxy for the Web. Prior to version 7.5, due to hea ...
BDU:2026-07242
Уязвимость прокси-сервера Squid, связанная с использованием памяти после её освобождения, позволяющая нарушителю выполнить произвольный код
RLSA-2026:8317
Important: squid:4 security update
RLSA-2026:8119
Important: squid security update
RLSA-2026:6301
Important: squid security update
ELSA-2026-8880
ELSA-2026-8880: squid security update (IMPORTANT)
ELSA-2026-8317
ELSA-2026-8317: squid:4 security update (IMPORTANT)
ELSA-2026-8119
ELSA-2026-8119: squid security update (IMPORTANT)
ELSA-2026-6301
ELSA-2026-6301: squid security update (IMPORTANT)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-33526 Squid is a caching proxy for the Web. Prior to version 7.5, due to heap Use-After-Free, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. Version 7.5 contains a patch. | CVSS3: 7.5 | 9% Низкий | 4 месяца назад | |
CVE-2026-33526 Squid is a caching proxy for the Web. Prior to version 7.5, due to heap Use-After-Free, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. Version 7.5 contains a patch. | CVSS3: 7.5 | 9% Низкий | 4 месяца назад | |
CVE-2026-33526 Squid is a caching proxy for the Web. Prior to version 7.5, due to heap Use-After-Free, Squid is vulnerable to Denial of Service when handling ICP traffic. This problem allows a remote attacker to perform a reliable and repeatable Denial of Service attack against the Squid service using ICP protocol. This attack is limited to Squid deployments that explicitly enable ICP support (i.e. configure non-zero `icp_port`). This problem _cannot_ be mitigated by denying ICP queries using `icp_access` rules. Version 7.5 contains a patch. | CVSS3: 7.5 | 9% Низкий | 4 месяца назад | |
CVE-2026-33526 Squid vulnerable to Denial of Service in ICP Request handling | CVSS3: 7.5 | 9% Низкий | 4 месяца назад | |
CVE-2026-33526 Squid is a caching proxy for the Web. Prior to version 7.5, due to hea ... | CVSS3: 7.5 | 9% Низкий | 4 месяца назад | |
BDU:2026-07242 Уязвимость прокси-сервера Squid, связанная с использованием памяти после её освобождения, позволяющая нарушителю выполнить произвольный код | CVSS3: 8.6 | 9% Низкий | 4 месяца назад | |
RLSA-2026:8317 Important: squid:4 security update | 4 месяца назад | |||
RLSA-2026:8119 Important: squid security update | 4 месяца назад | |||
RLSA-2026:6301 Important: squid security update | 4 месяца назад | |||
ELSA-2026-8880 ELSA-2026-8880: squid security update (IMPORTANT) | 2 месяца назад | |||
ELSA-2026-8317 ELSA-2026-8317: squid:4 security update (IMPORTANT) | 4 месяца назад | |||
ELSA-2026-8119 ELSA-2026-8119: squid security update (IMPORTANT) | 4 месяца назад | |||
ELSA-2026-6301 ELSA-2026-6301: squid security update (IMPORTANT) | 4 месяца назад |
Уязвимостей на страницу