PT-2004-3544 · Squid · Squid Web Proxy Cache+1

Published

2004-12-31

·

Updated

2008-09-05

·

CVE-2004-2654

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions Squid Web Proxy Cache versions prior to 2.6 STABLE6
Description The issue allows remote attackers to cause a denial of service, resulting in a segmentation fault. This is achieved through unspecified vectors that trigger a null dereference. Initial claims suggested a buffer overflow, but this was later retracted by the researcher.
Recommendations For Squid Web Proxy Cache versions prior to 2.6 STABLE6, update to version 2.6 STABLE6 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2004-2654

Affected Products

Squid Cache
Squid Web Proxy Cache