CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:N/AC:L/Au:N/C:N/I:N/A:P
AI Score
Confidence
Low
EPSS
Percentile
99.6%
It was discovered that Squid incorrectly handled certain auth headers. A
remote attacker could exploit this with a specially-crafted auth header
and cause Squid to go into an infinite loop, resulting in a denial of
service. This issue only affected Ubuntu 8.10, 9.04 and 9.10.
(CVE-2009-2855)
It was discovered that Squid incorrectly handled certain DNS packets. A
remote attacker could exploit this with a specially-crafted DNS packet
and cause Squid to crash, resulting in a denial of service. (CVE-2010-0308)
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
Ubuntu | 9.10 | noarch | squid | < 2.7.STABLE6-2ubuntu2.1 | UNKNOWN |
Ubuntu | 9.10 | noarch | squid-cgi | < 2.7.STABLE6-2ubuntu2.1 | UNKNOWN |
Ubuntu | 9.04 | noarch | squid | < 2.7.STABLE3-4.1ubuntu1.1 | UNKNOWN |
Ubuntu | 9.04 | noarch | squid | < cgi-2.7.STABLE3-4.1ubuntu1.1 | UNKNOWN |
Ubuntu | 8.10 | noarch | squid | < 2.7.STABLE3-1ubuntu2.2 | UNKNOWN |
Ubuntu | 8.10 | noarch | squid | < cgi-2.7.STABLE3-1ubuntu2.2 | UNKNOWN |
Ubuntu | 8.04 | noarch | squid | < 2.6.18-1ubuntu3.1 | UNKNOWN |
Ubuntu | 8.04 | noarch | squid-cgi | < 2.6.18-1ubuntu3.1 | UNKNOWN |
Ubuntu | 8.04 | noarch | squidclient | < 2.6.18-1ubuntu3.1 | UNKNOWN |
Ubuntu | 6.06 | noarch | squid | < 2.5.12-4ubuntu2.5 | UNKNOWN |