Vulmon
Recent Vulnerabilities
Product List
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
squid-cache squid 4.0.2 vulnerabilities and exploits
(subscribe to this query)
7.5
CVSSv2
CVE-2016-3947
Heap-based buffer overflow in the Icmp6::Recv function in icmp/Icmp6.cc in the pinger utility in Squid prior to 3.5.16 and 4.x prior to 4.0.8 allows remote servers to cause a denial of service (performance degradation or transition failures) or write sensitive information to log ...
Squid-cache Squid 4.0.5
Squid-cache Squid 4.0.3
Squid-cache Squid 4.0.1
Squid-cache Squid
Squid-cache Squid 4.0.2
Squid-cache Squid 4.0.7
Squid-cache Squid 4.0.4
Squid-cache Squid 4.0.6
Canonical Ubuntu Linux 12.04
Canonical Ubuntu Linux 16.04
Canonical Ubuntu Linux 15.10
Canonical Ubuntu Linux 14.04
5
CVSSv2
CVE-2016-10002
Incorrect processing of responses to If-None-Modified HTTP conditional requests in Squid HTTP Proxy 3.1.10 up to and including 3.1.23, 3.2.0.3 up to and including 3.5.22, and 4.0.1 up to and including 4.0.16 leads to client-specific Cookie data being leaked to other clients. Atta...
Debian Debian Linux 8.0
Squid-cache Squid 3.1.21
Squid-cache Squid 3.1.17
Squid-cache Squid 3.1.22
Squid-cache Squid 3.1.18
Squid-cache Squid 3.1.14
Squid-cache Squid 3.1.23
Squid-cache Squid 3.1.15
Squid-cache Squid 3.1.12
Squid-cache Squid 3.1.10
Squid-cache Squid 3.1.11
Squid-cache Squid 3.1.20
Squid-cache Squid 3.1.19
Squid-cache Squid 3.1.16
Squid-cache Squid 3.2.0.18
Squid-cache Squid 3.2.0.9
Squid-cache Squid 3.2.2
Squid-cache Squid 3.2.4
Squid-cache Squid 3.2.0.6
Squid-cache Squid 3.2.0.15
Squid-cache Squid 3.2.10
Squid-cache Squid 3.2.13
5
CVSSv2
CVE-2016-2570
The Edge Side Includes (ESI) parser in Squid 3.x prior to 3.5.15 and 4.x prior to 4.0.7 does not check buffer limits during XML parsing, which allows remote HTTP servers to cause a denial of service (assertion failure and daemon exit) via a crafted XML document, related to esi/Cu...
Squid-cache Squid 3.2.0.18
Squid-cache Squid 3.1.0.18
Squid-cache Squid 3.0.stable13
Squid-cache Squid 3.3.3
Squid-cache Squid 3.2.0.9
Squid-cache Squid 3.3.11
Squid-cache Squid 3.0
Squid-cache Squid 4.0.5
Squid-cache Squid 3.0.stable9
Squid-cache Squid 3.1.13
Squid-cache Squid 4.0.3
Squid-cache Squid 3.3.5
Squid-cache Squid 3.2.0.1
Squid-cache Squid 3.0.stable20
Squid-cache Squid 3.3.0.3
Squid-cache Squid 3.0.stable14
Squid-cache Squid 3.3.13
Squid-cache Squid 3.2.2
Squid-cache Squid 3.0.stable3
Squid-cache Squid 3.2.4
Squid-cache Squid 3.2.0.6
Squid-cache Squid 3.1.0.7
5
CVSSv2
CVE-2016-2572
http.cc in Squid 4.x prior to 4.0.7 relies on the HTTP status code after a response-parsing failure, which allows remote HTTP servers to cause a denial of service (assertion failure and daemon exit) via a malformed response.
Squid-cache Squid 4.0.5
Squid-cache Squid 4.0.3
Squid-cache Squid 4.0.1
Squid-cache Squid 4.0.2
Squid-cache Squid 4.0.4
Squid-cache Squid 4.0.6
CVSSv2
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2024-0044
client side
CVE-2021-47601
deserialization
CVE-2024-34994
encryption
CVE-2021-47609
CVE-2024-37079
CVE-2024-38608
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started