CVSS3
Attack Vector
NETWORK
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
NONE
Scope
CHANGED
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H
AI Score
Confidence
High
EPSS
Percentile
88.9%
Squid is a high-performance proxy caching server for web clients, supporting FTP, Gopher, and HTTP data objects.
Security Fix(es):
squid: denial of service in HTTP header parser (CVE-2024-25617)
squid: denial of service in HTTP request parsing (CVE-2023-50269)
squid: Buffer over-read in the HTTP Message processing feature (CVE-2023-49285)
squid: Incorrect Check of Function Return Value In Helper Process management (CVE-2023-49286)
squid: NULL pointer dereference in the gopher protocol code (CVE-2023-46728)
squid: Denial of Service in SSL Certificate validation (CVE-2023-46724)
For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
RedHat | 7 | x86_64 | squid-migration-script | < 3.5.20-17.el7_9.10 | squid-migration-script-3.5.20-17.el7_9.10.x86_64.rpm |
RedHat | 7 | x86_64 | squid-debuginfo | < 3.5.20-17.el7_9.10 | squid-debuginfo-3.5.20-17.el7_9.10.x86_64.rpm |
RedHat | 7 | ppc64 | squid | < 3.5.20-17.el7_9.10 | squid-3.5.20-17.el7_9.10.ppc64.rpm |
RedHat | 7 | ppc64 | squid-debuginfo | < 3.5.20-17.el7_9.10 | squid-debuginfo-3.5.20-17.el7_9.10.ppc64.rpm |
RedHat | 7 | ppc64le | squid-debuginfo | < 3.5.20-17.el7_9.10 | squid-debuginfo-3.5.20-17.el7_9.10.ppc64le.rpm |
RedHat | 7 | ppc64 | squid-migration-script | < 3.5.20-17.el7_9.10 | squid-migration-script-3.5.20-17.el7_9.10.ppc64.rpm |
RedHat | 7 | x86_64 | squid | < 3.5.20-17.el7_9.10 | squid-3.5.20-17.el7_9.10.x86_64.rpm |
RedHat | 7 | ppc64le | squid-migration-script | < 3.5.20-17.el7_9.10 | squid-migration-script-3.5.20-17.el7_9.10.ppc64le.rpm |
RedHat | 7 | x86_64 | squid-sysvinit | < 3.5.20-17.el7_9.10 | squid-sysvinit-3.5.20-17.el7_9.10.x86_64.rpm |
RedHat | 7 | s390x | squid-sysvinit | < 3.5.20-17.el7_9.10 | squid-sysvinit-3.5.20-17.el7_9.10.s390x.rpm |