Debian Squid vulnerabilities
120 known vulnerabilities affecting debian/squid.
Total CVEs
120
CISA KEV
0
Public exploits
9
Exploited in wild
0
Severity breakdown
CRITICAL14HIGH39MEDIUM50LOW17
Vulnerabilities
Page 4 of 6
CVE-2020-24606P3HIGHCVSS 8.6fixed in squid 4.13-1 (bookworm)2020
CVE-2020-24606 [HIGH] CVE-2020-24606: squid - Squid before 4.13 and 5.x before 5.0.4 allows a trusted peer to perform Denial o...
Squid before 4.13 and 5.x before 5.0.4 allows a trusted peer to perform Denial of Service by consuming all available CPU cycles during handling of a crafted Cache Digest response message. This only occurs when cache_peer is used with the cache digests feature. The problem exists because peerDigestHandleReply() livelocking in peer_digest.cc mishandles EOF.
Scope: local
debian
CVE-2020-15811P3MEDIUMCVSS 6.5fixed in squid 4.13-1 (bookworm)2020
CVE-2020-15811 [MEDIUM] CVE-2020-15811: squid - An issue was discovered in Squid before 4.13 and 5.x before 5.0.4. Due to incorr...
An issue was discovered in Squid before 4.13 and 5.x before 5.0.4. Due to incorrect data validation, HTTP Request Splitting attacks may succeed against HTTP and HTTPS traffic. This leads to cache poisoning. This allows any client, including browser scripts, to bypass local security and poison the browser cache and any downstream caches with content from an arbitrary
debian
CVE-2021-28651P3HIGHCVSS 7.5fixed in squid 4.13-10 (bookworm)2021
CVE-2021-28651 [HIGH] CVE-2021-28651: squid - An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to a buff...
An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to a buffer-management bug, it allows a denial of service. When resolving a request with the urn: scheme, the parser leaks a small amount of memory. However, there is an unspecified attack methodology that can easily trigger a large amount of memory consumption.
Scope: local
bookworm: resolved (fix
debian
CVE-2019-18678P3MEDIUMCVSS 5.3fixed in squid 4.9-1 (bookworm)2019
CVE-2019-18678 [MEDIUM] CVE-2019-18678: squid - An issue was discovered in Squid 3.x and 4.x through 4.8. It allows attackers to...
An issue was discovered in Squid 3.x and 4.x through 4.8. It allows attackers to smuggle HTTP requests through frontend software to a Squid instance that splits the HTTP Request pipeline differently. The resulting Response messages corrupt caches (between a client and Squid) with attacker-controlled content at arbitrary URLs. Effects are isolated to software between
debian
CVE-2005-0095P4MEDIUMCVSS 5.0fixed in squid 2.5.7-4 (bookworm)2005
CVE-2005-0095 [MEDIUM] CVE-2005-0095: squid - The WCCP message parsing code in Squid 2.5.STABLE7 and earlier allows remote att...
The WCCP message parsing code in Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (crash) via malformed WCCP messages with source addresses that are spoofed to reference Squid's home router and invalid WCCP_I_SEE_YOU cache numbers.
Scope: local
bookworm: resolved (fixed in 2.5.7-4)
bullseye: resolved (fixed in 2.5.7-4)
forky: resolved
debian
CVE-2014-7142P3MEDIUMCVSS 6.4fixed in squid 4.1-1 (bookworm)2014
CVE-2014-7142 [MEDIUM] CVE-2014-7142: squid - The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive...
The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive information or cause a denial of service (crash) via a crafted (1) ICMP or (2) ICMP6 packet size.
Scope: local
bookworm: resolved (fixed in 4.1-1)
bullseye: resolved (fixed in 4.1-1)
forky: resolved (fixed in 4.1-1)
sid: resolved (fixed in 4.1-1)
trixie: resolved (fixed in 4.1-1)
debian
CVE-2019-12529P3MEDIUMCVSS 5.9fixed in squid 4.8-1 (bookworm)2019
CVE-2019-12529 [MEDIUM] CVE-2019-12529: squid - An issue was discovered in Squid 2.x through 2.7.STABLE9, 3.x through 3.5.28, an...
An issue was discovered in Squid 2.x through 2.7.STABLE9, 3.x through 3.5.28, and 4.x through 4.7. When Squid is configured to use Basic Authentication, the Proxy-Authorization header is parsed via uudecode. uudecode determines how many bytes will be decoded by iterating over the input and checking its table. The length is then used to start decoding the string. The
debian
CVE-2004-2480P4MEDIUMCVSS 5.0PoCfixed in squid 2.5 (bookworm)2004
CVE-2004-2480 [MEDIUM] CVE-2004-2480: squid - Squid Web Proxy Cache 2.3.STABLE5 allows remote attackers to bypass security con...
Squid Web Proxy Cache 2.3.STABLE5 allows remote attackers to bypass security controls and access arbitrary websites via "@@" sequences in a URL within Internet Explorer.
Scope: local
bookworm: resolved (fixed in 2.5)
bullseye: resolved (fixed in 2.5)
forky: resolved (fixed in 2.5)
sid: resolved (fixed in 2.5)
trixie: resolved (fixed in 2.5)
debian
CVE-2020-15810P3MEDIUMCVSS 6.5fixed in squid 4.13-1 (bookworm)2020
CVE-2020-15810 [MEDIUM] CVE-2020-15810: squid - An issue was discovered in Squid before 4.13 and 5.x before 5.0.4. Due to incorr...
An issue was discovered in Squid before 4.13 and 5.x before 5.0.4. Due to incorrect data validation, HTTP Request Smuggling attacks may succeed against HTTP and HTTPS traffic. This leads to cache poisoning. This allows any client, including browser scripts, to bypass local security and poison the proxy cache and any downstream caches with content from an arbitrary s
debian
CVE-2005-0194P3CRITICALCVSS 10.0fixed in squid 2.5.7-7 (bookworm)2005
CVE-2005-0194 [CRITICAL] CVE-2005-0194: squid - Squid 2.5, when processing the configuration file, parses empty Access Control L...
Squid 2.5, when processing the configuration file, parses empty Access Control Lists (ACLs), including proxy_auth ACLs without defined auth schemes, in a way that effectively removes arguments, which could allow remote attackers to bypass intended ACLs if the administrator ignores the parser warnings.
Scope: local
bookworm: resolved (fixed in 2.5.7-7)
bullseye: reso
debian
CVE-2005-0175P3MEDIUMCVSS 5.0fixed in squid 2.5.7-6 (bookworm)2005
CVE-2005-0175 [MEDIUM] CVE-2005-0175: squid - Squid 2.5 up to 2.5.STABLE7 allows remote attackers to poison the cache via an H...
Squid 2.5 up to 2.5.STABLE7 allows remote attackers to poison the cache via an HTTP response splitting attack.
Scope: local
bookworm: resolved (fixed in 2.5.7-6)
bullseye: resolved (fixed in 2.5.7-6)
forky: resolved (fixed in 2.5.7-6)
sid: resolved (fixed in 2.5.7-6)
trixie: resolved (fixed in 2.5.7-6)
debian
CVE-2021-28116P3LOWCVSS 3.7fixed in squid 5.2-1 (bookworm)2021
CVE-2021-28116 [LOW] CVE-2021-28116: squid - Squid through 4.14 and 5.x through 5.0.5, in some configurations, allows informa...
Squid through 4.14 and 5.x through 5.0.5, in some configurations, allows information disclosure because of an out-of-bounds read in WCCP protocol data. This can be leveraged as part of a chain for remote code execution as nobody.
Scope: local
bookworm: resolved (fixed in 5.2-1)
bullseye: resolved (fixed in 4.13-10+deb11u1)
forky: resolved (fixed in 5.2-1)
sid: resolved
debian
CVE-2005-0174P4MEDIUMCVSS 5.0fixed in squid 2.5.7-6 (bookworm)2005
CVE-2005-0174 [MEDIUM] CVE-2005-0174: squid - Squid 2.5 up to 2.5.STABLE7 allows remote attackers to poison the cache or condu...
Squid 2.5 up to 2.5.STABLE7 allows remote attackers to poison the cache or conduct certain attacks via headers that do not follow the HTTP specification, including (1) multiple Content-Length headers, (2) carriage return (CR) characters that are not part of a CRLF pair, and (3) header names containing whitespace characters.
Scope: local
bookworm: resolved (fixed in 2.
debian
CVE-2026-33515P3MEDIUMCVSS 6.9fixed in squid 7.5-1 (forky)2026
CVE-2026-33515 [MEDIUM] CVE-2026-33515: squid - Squid is a caching proxy for the Web. Prior to version 7.5, due to improper inpu...
Squid is a caching proxy for the Web. Prior to version 7.5, due to improper input validation, Squid is vulnerable to out of bounds read when handling ICP traffic. This problem allows a remote attacker to receive small amounts of memory potentially containing sensitive information when responding with errors to invalid ICP requests. This attack is limited to Squid de
debian
CVE-2018-1172P3LOWCVSS 5.9fixed in squid 4.1-1 (bookworm)2018
CVE-2018-1172 [MEDIUM] CVE-2018-1172: squid - This vulnerability allows remote attackers to deny service on vulnerable install...
This vulnerability allows remote attackers to deny service on vulnerable installations of The Squid Software Foundation Squid 3.5.27-20180318. Authentication is not required to exploit this vulnerability. The specific flaw exists within ClientRequestContext::sslBumpAccessCheck(). A crafted request can trigger the dereference of a null pointer. An attacker can leverage
debian
CVE-2010-0639P3MEDIUMCVSS 5.0fixed in squid 2.7.STABLE8-1 (bookworm)2010
CVE-2010-0639 [MEDIUM] CVE-2010-0639: squid - The htcpHandleTstRequest function in htcp.c in Squid 2.x before 2.6.STABLE24 and...
The htcpHandleTstRequest function in htcp.c in Squid 2.x before 2.6.STABLE24 and 2.7 before 2.7.STABLE8, and htcp.cc in 3.0 before 3.0.STABLE24, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via crafted packets to the HTCP port.
Scope: local
bookworm: resolved (fixed in 2.7.STABLE8-1)
bullseye: resolved (fixed in 2.7.
debian
CVE-2024-37894P3MEDIUMCVSS 6.3fixed in squid 5.7-2+deb12u2 (bookworm)2024
CVE-2024-37894 [MEDIUM] CVE-2024-37894: squid - Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due ...
Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when assigning ESI variables, Squid is susceptible to a Memory Corruption error. This error can lead to a Denial of Service attack.
Scope: local
bookworm: resolved (fixed in 5.7-2+deb12u2)
bullseye: resolved (fixed in 4.13-10+deb11u4)
forky: resolved (fixe
debian
CVE-2021-31808P3MEDIUMCVSS 6.5fixed in squid 4.13-10 (bookworm)2021
CVE-2021-31808 [MEDIUM] CVE-2021-31808: squid - An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to an inp...
An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to an input-validation bug, it is vulnerable to a Denial of Service attack (against all clients using the proxy). A client sends an HTTP Range request to trigger this.
Scope: local
bookworm: resolved (fixed in 4.13-10)
bullseye: resolved (fixed in 4.13-10)
forky: resolved (fixed in 4.13-10)
sid:
debian
CVE-2020-14058P3LOWCVSS 7.5fixed in squid 4.12-1 (bookworm)2020
CVE-2020-14058 [HIGH] CVE-2020-14058: squid - An issue was discovered in Squid before 4.12 and 5.x before 5.0.3. Due to use of...
An issue was discovered in Squid before 4.12 and 5.x before 5.0.3. Due to use of a potentially dangerous function, Squid and the default certificate validation helper are vulnerable to a Denial of Service when opening a TLS connection to an attacker-controlled server for HTTPS. This occurs because unrecognized error values are mapped to NULL, but later code expects th
debian
CVE-2013-0189P3MEDIUMCVSS 5.0fixed in squid 2.7.STABLE9-2 (bookworm)2013
CVE-2013-0189 [MEDIUM] CVE-2013-0189: squid - cachemgr.cgi in Squid 3.1.x and 3.2.x, possibly 3.1.22, 3.2.4, and other version...
cachemgr.cgi in Squid 3.1.x and 3.2.x, possibly 3.1.22, 3.2.4, and other versions, allows remote attackers to cause a denial of service (resource consumption) via a crafted request. NOTE: this issue is due to an incorrect fix for CVE-2012-5643, possibly involving an incorrect order of arguments or incorrect comparison.
Scope: local
bookworm: resolved (fixed in 2.7.STA
debian