CVE-2005-0094
published 2005-01-15CVE-2005-0094: Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squid 2.5.STABLE7 and earlier allows remote malicious Gopher servers to cause a…
PriorityP422medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
8.63%
94.5th percentile
Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squid 2.5.STABLE7 and earlier allows remote malicious Gopher servers to cause a denial of service (crash) via crafted responses.
Affected
102 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | squid | < squid 2.5.7-4 (bookworm) | squid 2.5.7-4 (bookworm) |
| debian | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
| squid-cache | squid | — | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Trigger condition: a malicious Gopher server sends a response line exceeding 4096 bytes to crash Squid via buffer overflow in gopherToHTML ↗
- →Vulnerable function is gopherToHTML in the Gopher reply parser; monitor for crashes or memory corruption in Squid daemon when proxying Gopher traffic ↗
- ·Vulnerability is only exploitable if Squid is configured to proxy Gopher protocol traffic; affected versions are Squid 2.5.STABLE7 and earlier ↗
- ·A regression of this same vulnerability (CVE-2011-3205) was later introduced in Squid 3.x branches (3.0 before 3.0.STABLE26, 3.1 before 3.1.15, 3.2 before 3.2.0.11), meaning the same detection logic applies to those versions as well ↗
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0MEDIUM
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xv7f-73w8-27qj: Buffer overflow in the gopherToHTML function in gopher
ghsa_unreviewed·2022-05-17·CVSS 5.0
CVE-2011-3205 [MEDIUM] GHSA-xv7f-73w8-27qj: Buffer overflow in the gopherToHTML function in gopher
Buffer overflow in the gopherToHTML function in gopher.cc in the Gopher reply parser in Squid 3.0 before 3.0.STABLE26, 3.1 before 3.1.15, and 3.2 before 3.2.0.11 allows remote Gopher servers to cause a denial of service (memory corruption and daemon restart) or possibly have unspecified other impact via a long line in a response. NOTE: This issue exists because of a CVE-2005-0094 regression.
GHSA
GHSA-ph2m-29xw-r5gc: Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squid 2
ghsa_unreviewed·2022-05-01
CVE-2005-0094 [MEDIUM] GHSA-ph2m-29xw-r5gc: Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squid 2
Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squid 2.5.STABLE7 and earlier allows remote malicious Gopher servers to cause a denial of service (crash) via crafted responses.
OSV
CVE-2005-0094: Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squid 2
osv·2005-01-15·CVSS 5.0
CVE-2005-0094 [MEDIUM] CVE-2005-0094: Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squid 2
Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squid 2.5.STABLE7 and earlier allows remote malicious Gopher servers to cause a denial of service (crash) via crafted responses.
Red Hat
squid: buffer overflow flaw in Squid's Gopher reply parser (SQUID-2011:3)
vendor_redhat·2011-08-28·CVSS 5.0
CVE-2011-3205 [MEDIUM] squid: buffer overflow flaw in Squid's Gopher reply parser (SQUID-2011:3)
squid: buffer overflow flaw in Squid's Gopher reply parser (SQUID-2011:3)
Buffer overflow in the gopherToHTML function in gopher.cc in the Gopher reply parser in Squid 3.0 before 3.0.STABLE26, 3.1 before 3.1.15, and 3.2 before 3.2.0.11 allows remote Gopher servers to cause a denial of service (memory corruption and daemon restart) or possibly have unspecified other impact via a long line in a response. NOTE: This issue exists because of a CVE-2005-0094 regression.
Package: squid (Red Hat Enterprise Linux 4) - Not affected
Package: squid (Red Hat Enterprise Linux 5) - Not affected
Debian
CVE-2011-3205: squid - Buffer overflow in the gopherToHTML function in gopher.cc in the Gopher reply pa...
vendor_debian·2011·CVSS 5.0
CVE-2011-3205 [MEDIUM] CVE-2011-3205: squid - Buffer overflow in the gopherToHTML function in gopher.cc in the Gopher reply pa...
Buffer overflow in the gopherToHTML function in gopher.cc in the Gopher reply parser in Squid 3.0 before 3.0.STABLE26, 3.1 before 3.1.15, and 3.2 before 3.2.0.11 allows remote Gopher servers to cause a denial of service (memory corruption and daemon restart) or possibly have unspecified other impact via a long line in a response. NOTE: This issue exists because of a CVE-2005-0094 regression.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
Ubuntu
Squid vulnerabilities
vendor_ubuntu·2005-01-21
CVE-2005-0094 Squid vulnerabilities
Title: Squid vulnerabilities
Summary: Squid vulnerabilities
infamous41md discovered several Denial of Service vulnerabilities in
squid.
A malicious Gopher server could crash squid by sending a line bigger
than 4096 bytes. (CAN-2005-0094)
If squid is configured to send WCPP (Web Cache Communication Protocol)
messages to a "home router", an attacker who was able to send UDP
packets with a forged source address of this router could crash the
erver with a specially crafted WCPP message. (CAN-2005-0095)
Previous versions of squid have a memory leak which gradually cause
memory exhaustion and eventual termination. (CAN-2005-0096)
A remote attacker could crash the server by sending a specially
crafted NTLM type 3 packet. (CAN-2005-0097)
Instructions: In general, a standard system update w
Red Hat
security flaw
vendor_redhat·2005-01-12·CVSS 5.0
CVE-2005-0094 [MEDIUM] security flaw
security flaw
Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squid 2.5.STABLE7 and earlier allows remote malicious Gopher servers to cause a denial of service (crash) via crafted responses.
Debian
CVE-2005-0094: squid - Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squi...
vendor_debian·2005·CVSS 5.0
CVE-2005-0094 [MEDIUM] CVE-2005-0094: squid - Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squi...
Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squid 2.5.STABLE7 and earlier allows remote malicious Gopher servers to cause a denial of service (crash) via crafted responses.
Scope: local
bookworm: resolved (fixed in 2.5.7-4)
bullseye: resolved (fixed in 2.5.7-4)
forky: resolved (fixed in 2.5.7-4)
sid: resolved (fixed in 2.5.7-4)
trixie: resolved (fixed in 2.5.7-4)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2005-0094 security flaw
bugzilla·2018-08-16·CVSS 5.0
CVE-2005-0094 [MEDIUM] CVE-2005-0094 security flaw
CVE-2005-0094 security flaw
Flaw bug created to hold information about an old flaw we knew something about. For more details see the MITRE CVE description.
Discussion:
MITRE description:
Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squid 2.5.STABLE7 and earlier allows remote malicious Gopher servers to cause a denial of service (crash) via crafted responses.
Bugzilla
CVE-2011-3205 squid: buffer overflow flaw in Squid's Gopher reply parser (SQUID-2011:3)
bugzilla·2011-08-30·CVSS 5.0
CVE-2011-3205 [MEDIUM] CVE-2011-3205 squid: buffer overflow flaw in Squid's Gopher reply parser (SQUID-2011:3)
CVE-2011-3205 squid: buffer overflow flaw in Squid's Gopher reply parser (SQUID-2011:3)
A flaw was reported [1] in how Squid parsed responses from Gopher servers. This flaw could result in a buffer overflow if a Gopher server were to return a line longer than 4096 bytes, leading to memory corruption and a crash. This flaw is an extension of SQUID-2005:1 (or CVE-2005-0094) in Squid 3.x, due to increased packet read sizes. A malicious user could setup a fake Gopher server and forward requests to it through Squid. A specially crafted response from that server could cause Squid to restart.
This has been corrected in upstream versions 3.2.0.11, 3.1.15, and 3.0.STABLE26. Patches for 3.0 [2], 3.1 [3], and 3.2 [4] are available.
[1] http://www.squid-cache.org/Advisories/SQUID-2011_3.txt
[2] htt
Bugzilla
Squid Multiple Vulnerabilities (CVE-2004-0541 CVE-2004-0832 CVE-2004-0918 CVE-2005-0094 CVE-2005-0095 CVE-2005-0096 CVE-2005-0097 CVE-2005-0446 CVE-2005-0626 CVE-2005-0718 CVE-1999-0710 CVE-2005-1345
bugzilla·2004-10-11·CVSS 7.5
CVE-2004-0541 [HIGH] Squid Multiple Vulnerabilities (CVE-2004-0541 CVE-2004-0832 CVE-2004-0918 CVE-2005-0094 CVE-2005-0095 CVE-2005-0096 CVE-2005-0097 CVE-2005-0446 CVE-2005-0626 CVE-2005-0718 CVE-1999-0710 CVE-2005-1345
Squid Multiple Vulnerabilities (CVE-2004-0541 CVE-2004-0832 CVE-2004-0918 CVE-2005-0094 CVE-2005-0095 CVE-2005-0096 CVE-2005-0097 CVE-2005-0446 CVE-2005-0626 CVE-2005-0718 CVE-1999-0710 CVE-2005-1345 CVE-2005-1519 CVE-2004-2479 CVE-2005-2794 CVE-2005-...
iDEFENSE reported on 2004-10-11 a vulnerability in the squid SNMP
module. This issue could lead to a potential DOS (it will restart
the server, dropping all open connections).
http://www.idefense.com/application/poi/display?id=152&type=vulnerabilities
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=135320
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=135319
------- Additional Comments From [email protected] 2004-10-11 19:30:05 ----
Patch available here:
http://www1.uk.squid-cache.org/squid/Versions/v2/2
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000923http://fedoranews.org/updates/FEDORA--.shtmlhttp://secunia.com/advisories/13825http://security.gentoo.org/glsa/glsa-200501-25.xmlhttp://www.debian.org/security/2005/dsa-651http://www.mandriva.com/security/advisories?name=MDKSA-2005:014http://www.novell.com/linux/security/advisories/2005_06_squid.htmlhttp://www.redhat.com/support/errata/RHSA-2005-060.htmlhttp://www.redhat.com/support/errata/RHSA-2005-061.htmlhttp://www.securityfocus.com/bid/12276http://www.squid-cache.org/Advisories/SQUID-2005_1.txthttp://www.squid-cache.org/Versions/v2/2.5/bugs/squid-2.5.STABLE7-gopher_html_parsing.patchhttp://www.trustix.org/errata/2005/0003/https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11146http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000923http://fedoranews.org/updates/FEDORA--.shtmlhttp://secunia.com/advisories/13825http://security.gentoo.org/glsa/glsa-200501-25.xmlhttp://www.debian.org/security/2005/dsa-651http://www.mandriva.com/security/advisories?name=MDKSA-2005:014http://www.novell.com/linux/security/advisories/2005_06_squid.htmlhttp://www.redhat.com/support/errata/RHSA-2005-060.htmlhttp://www.redhat.com/support/errata/RHSA-2005-061.htmlhttp://www.securityfocus.com/bid/12276http://www.squid-cache.org/Advisories/SQUID-2005_1.txthttp://www.squid-cache.org/Versions/v2/2.5/bugs/squid-2.5.STABLE7-gopher_html_parsing.patchhttp://www.trustix.org/errata/2005/0003/https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11146
2005-01-15
Published