CVE-2005-3258

7 documents6 sources
Severity
5.0MEDIUM
EPSS
24.1%
top 3.94%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 20
Latest updateMay 1

Description

The rfc1738_do_escape function in ftp.c for Squid 2.5 STABLE11 and earlier allows remote FTP servers to cause a denial of service (segmentation fault) via certain "odd" responses.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

NVDsquid/squid45 versions+44

Patches

🔴Vulnerability Details

2
GHSA
GHSA-8j6p-p7q3-3j42: The rfc1738_do_escape function in ftp2022-05-01
CVEList
CVE-2005-3258: The rfc1738_do_escape function in ftp2005-10-20

📋Vendor Advisories

2
Debian
CVE-2005-3258: squid - The rfc1738_do_escape function in ftp.c for Squid 2.5 STABLE11 and earlier allow...2005
Red Hat
CVE-2005-3258: The rfc1738_do_escape function in ftp

💬Community

2
Bugzilla
CVE-2005-3258 Squid crash due to malformed FTP response2005-10-19
Bugzilla
CVE-2005-3258 Squid crash due to malformed FTP response2005-10-19