Squid-Cache Squid vulnerabilities

109 known vulnerabilities affecting squid-cache/squid.

Total CVEs
109
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
CRITICAL8HIGH50MEDIUM49LOW2

Vulnerabilities

Page 5 of 6
CVE-2016-2571HIGHCVSS 7.5v3.0v3.0.stable1+131 more2016-02-27
CVE-2016-2571 [HIGH] CWE-20 CVE-2016-2571: http.cc in Squid 3.x before 3.5.15 and 4.x before 4.0.7 proceeds with the storage of certain data af http.cc in Squid 3.x before 3.5.15 and 4.x before 4.0.7 proceeds with the storage of certain data after a response-parsing failure, which allows remote HTTP servers to cause a denial of service (assertion failure and daemon exit) via a malformed response.
nvd
CVE-2016-2569HIGHCVSS 7.5v3.0v3.0.stable1+131 more2016-02-27
CVE-2016-2569 [HIGH] CWE-20 CVE-2016-2569: Squid 3.x before 3.5.15 and 4.x before 4.0.7 does not properly append data to String objects, which Squid 3.x before 3.5.15 and 4.x before 4.0.7 does not properly append data to String objects, which allows remote servers to cause a denial of service (assertion failure and daemon exit) via a long string, as demonstrated by a crafted HTTP Vary header.
nvd
CVE-2016-2572HIGHCVSS 7.5v4.0.1v4.0.2+4 more2016-02-27
CVE-2016-2572 [HIGH] CWE-20 CVE-2016-2572: http.cc in Squid 4.x before 4.0.7 relies on the HTTP status code after a response-parsing failure, w http.cc in Squid 4.x before 4.0.7 relies on the HTTP status code after a response-parsing failure, which allows remote HTTP servers to cause a denial of service (assertion failure and daemon exit) via a malformed response.
nvd
CVE-2016-2570HIGHCVSS 7.5v3.0v3.0.stable1+131 more2016-02-27
CVE-2016-2570 [HIGH] CWE-20 CVE-2016-2570: The Edge Side Includes (ESI) parser in Squid 3.x before 3.5.15 and 4.x before 4.0.7 does not check b The Edge Side Includes (ESI) parser in Squid 3.x before 3.5.15 and 4.x before 4.0.7 does not check buffer limits during XML parsing, which allows remote HTTP servers to cause a denial of service (assertion failure and daemon exit) via a crafted XML document, related to esi/CustomParser.cc and esi/CustomParser.h.
nvd
CVE-2014-9749MEDIUMCVSS 4.0v3.4.4v3.4.5+13 more2015-11-06
CVE-2014-9749 [MEDIUM] CWE-264 CVE-2014-9749: Squid 3.4.4 through 3.4.11 and 3.5.0.1 through 3.5.1, when Digest authentication is used, allow remo Squid 3.4.4 through 3.4.11 and 3.5.0.1 through 3.5.1, when Digest authentication is used, allow remote authenticated users to retain access by leveraging a stale nonce, aka "Nonce replay vulnerability."
nvd
CVE-2015-5400MEDIUMCVSS 6.8≤ 3.5.22015-09-28
CVE-2015-5400 [MEDIUM] CWE-264 CVE-2015-5400: Squid before 3.5.6 does not properly handle CONNECT method peer responses when configured with cache Squid before 3.5.6 does not properly handle CONNECT method peer responses when configured with cache_peer, which allows remote attackers to bypass intended restrictions and gain access to a backend proxy via a CONNECT request.
nvd
CVE-2015-3455LOWCVSS 2.6v3.2.0.1v3.2.0.2+68 more2015-05-18
CVE-2015-3455 [LOW] CWE-20 CVE-2015-3455: Squid 3.2.x before 3.2.14, 3.3.x before 3.3.14, 3.4.x before 3.4.13, and 3.5.x before 3.5.4, when co Squid 3.2.x before 3.2.14, 3.3.x before 3.3.14, 3.4.x before 3.4.13, and 3.5.x before 3.5.4, when configured with client-first SSL-bump, do not properly validate the domain or hostname fields of X.509 certificates, which allows man-in-the-middle attackers to spoof SSL servers via a valid certificate.
nvd
CVE-2015-0881MEDIUMCVSS 4.3≤ 3.1.0.182015-02-20
CVE-2015-0881 [MEDIUM] CVE-2015-0881: CRLF injection vulnerability in Squid before 3.1.1 allows remote attackers to inject arbitrary HTTP CRLF injection vulnerability in Squid before 3.1.1 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted header in a response.
nvd
CVE-2014-7141MEDIUMCVSS 6.4v3.1.1v3.1.2+78 more2014-11-26
CVE-2014-7141 [MEDIUM] CWE-19 CVE-2014-7141: The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive information or caus The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive information or cause a denial of service (out-of-bounds read and crash) via a crafted type in an (1) ICMP or (2) ICMP6 packet.
nvd
CVE-2014-7142MEDIUMCVSS 6.4v3.1.1v3.1.2+78 more2014-11-26
CVE-2014-7142 [MEDIUM] CWE-20 CVE-2014-7142: The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive information or caus The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive information or cause a denial of service (crash) via a crafted (1) ICMP or (2) ICMP6 packet size.
nvd
CVE-2014-6270MEDIUMCVSS 6.8v2.4.stable1v2.4.stable2+168 more2014-09-12
CVE-2014-6270 [MEDIUM] CWE-119 CVE-2014-6270: Off-by-one error in the snmpHandleUdp function in snmp_core.cc in Squid 2.x and 3.x, when an SNMP po Off-by-one error in the snmpHandleUdp function in snmp_core.cc in Squid 2.x and 3.x, when an SNMP port is configured, allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted UDP SNMP request, which triggers a heap-based buffer overflow.
nvd
CVE-2014-3609MEDIUMCVSS 5.0v3.1v3.1.0.1+86 more2014-09-11
CVE-2014-3609 [MEDIUM] CWE-20 CVE-2014-3609: HttpHdrRange.cc in Squid 3.x before 3.3.12 and 3.4.x before 3.4.6 allows remote attackers to cause a HttpHdrRange.cc in Squid 3.x before 3.3.12 and 3.4.x before 3.4.6 allows remote attackers to cause a denial of service (crash) via a request with crafted "Range headers with unidentifiable byte-range values."
nvd
CVE-2014-0128MEDIUMCVSS 5.0v3.1v3.1.0.1+84 more2014-04-14
CVE-2014-0128 [MEDIUM] CWE-20 CVE-2014-0128: Squid 3.1 before 3.3.12 and 3.4 before 3.4.4, when SSL-Bump is enabled, allows remote attackers to c Squid 3.1 before 3.3.12 and 3.4 before 3.4.4, when SSL-Bump is enabled, allows remote attackers to cause a denial of service (assertion failure) via a crafted range request, related to state management.
nvd
CVE-2013-1839HIGHCVSS 7.8v3.2.0.1v3.2.0.2+30 more2013-09-30
CVE-2013-1839 [HIGH] CWE-20 CVE-2013-1839: The strHdrAcptLangGetItem function in errorpage.cc in Squid 3.2.x before 3.2.9 and 3.3.x before 3.3. The strHdrAcptLangGetItem function in errorpage.cc in Squid 3.2.x before 3.2.9 and 3.3.x before 3.3.3 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a "," character in an Accept-Language header.
nvd
CVE-2013-4123MEDIUMCVSS 5.0PoCv3.3.0v3.3.0.2+39 more2013-09-16
CVE-2013-4123 [MEDIUM] CWE-20 CVE-2013-4123: client_side_request.cc in Squid 3.2.x before 3.2.13 and 3.3.x before 3.3.8 allows remote attackers t client_side_request.cc in Squid 3.2.x before 3.2.13 and 3.3.x before 3.3.8 allows remote attackers to cause a denial of service via a crafted port number in a HTTP Host header.
nvd
CVE-2013-4115HIGHCVSS 7.5v3.2.0.2v3.2.0.3+15 more2013-08-09
CVE-2013-4115 [HIGH] CWE-119 CVE-2013-4115: Buffer overflow in the idnsALookup function in dns_internal.cc in Squid 3.2 through 3.2.11 and 3.3 t Buffer overflow in the idnsALookup function in dns_internal.cc in Squid 3.2 through 3.2.11 and 3.3 through 3.3.6 allows remote attackers to cause a denial of service (memory corruption and server termination) via a long name in a DNS lookup request.
nvd
CVE-2013-0189MEDIUMCVSS 5.0v3.1v3.1.0.1+57 more2013-02-08
CVE-2013-0189 [MEDIUM] CVE-2013-0189: cachemgr.cgi in Squid 3.1.x and 3.2.x, possibly 3.1.22, 3.2.4, and other versions, allows remote att cachemgr.cgi in Squid 3.1.x and 3.2.x, possibly 3.1.22, 3.2.4, and other versions, allows remote attackers to cause a denial of service (resource consumption) via a crafted request. NOTE: this issue is due to an incorrect fix for CVE-2012-5643, possibly involving an incorrect order of arguments or incorrect comparison.
nvd
CVE-2012-5643MEDIUMCVSS 5.0v2.0v2.1+88 more2012-12-20
CVE-2012-5643 [MEDIUM] CWE-20 CVE-2012-5643: Multiple memory leaks in tools/cachemgr.cc in cachemgr.cgi in Squid 2.x and 3.x before 3.1.22, 3.2.x Multiple memory leaks in tools/cachemgr.cc in cachemgr.cgi in Squid 2.x and 3.x before 3.1.22, 3.2.x before 3.2.4, and 3.3.x before 3.3.0.2 allow remote attackers to cause a denial of service (memory consumption) via (1) invalid Content-Length headers, (2) long POST requests, or (3) crafted authentication credentials.
nvd
CVE-2012-2213MEDIUMCVSS 5.0v3.1.92012-04-28
CVE-2012-2213 [MEDIUM] CWE-264 CVE-2012-2213: Squid 3.1.9 allows remote attackers to bypass the access configuration for the CONNECT method by pro Squid 3.1.9 allows remote attackers to bypass the access configuration for the CONNECT method by providing an arbitrary allowed hostname in the Host HTTP header. NOTE: this issue might not be reproducible, because the researcher is unable to provide a squid.conf file for a vulnerable system, and the observed behavior is consistent with a squid.conf fi
nvd
CVE-2011-4096MEDIUMCVSS 5.0≤ 3.1.15v3.0+59 more2011-11-17
CVE-2011-4096 [MEDIUM] CWE-399 CVE-2011-4096: The idnsGrokReply function in Squid before 3.1.16 does not properly free memory, which allows remote The idnsGrokReply function in Squid before 3.1.16 does not properly free memory, which allows remote attackers to cause a denial of service (daemon abort) via a DNS reply containing a CNAME record that references another CNAME record that contains an empty A record.
nvd