2 results (0.007 seconds)

CVSS: 7.5EPSS: 14%CPEs: 38EXPL: 1

04 Dec 2007 — The "cache update reply processing" functionality in Squid 2.x before 2.6.STABLE17 and Squid 3.0 allows remote attackers to cause a denial of service (crash) via unknown vectors related to HTTP headers and an Array memory leak during requests for cached objects. La funcionalidad de "cache update reply processing" en Squid versiones 2.x anteriores a 2.6.STABLE17 y Squid versión 3.0, permite a atacantes remotos causar una denegación de servicio (bloqueo) por medio de vectores desconocidos relacionados con enc... • http://bugs.gentoo.org/show_bug.cgi?id=201209 • CWE-20: Improper Input Validation •

CVSS: 5.3EPSS: 1%CPEs: 7EXPL: 0

31 Dec 2004 — Squid Web Proxy Cache 2.5 might allow remote attackers to obtain sensitive information via URLs containing invalid hostnames that cause DNS operations to fail, which results in references to previously used error messages. • http://fedoranews.org/updates/FEDORA--.shtml •