Show filters
173 Total Results
Displaying 131-140 of 173
Sort by:
Attacker Value
Unknown

CVE-2005-3258

Disclosure Date: October 20, 2005 (last updated February 22, 2025)
The rfc1738_do_escape function in ftp.c for Squid 2.5 STABLE11 and earlier allows remote FTP servers to cause a denial of service (segmentation fault) via certain "odd" responses.
0
Attacker Value
Unknown

CVE-2005-2917

Disclosure Date: September 30, 2005 (last updated February 22, 2025)
Squid 2.5.STABLE10 and earlier, while performing NTLM authentication, does not properly handle certain request sequences, which allows attackers to cause a denial of service (daemon restart).
0
Attacker Value
Unknown

CVE-2005-2794

Disclosure Date: September 07, 2005 (last updated February 22, 2025)
store.c in Squid 2.5.STABLE10 and earlier allows remote attackers to cause a denial of service (crash) via certain aborted requests that trigger an assert error related to STORE_PENDING.
0
Attacker Value
Unknown

CVE-2005-2796

Disclosure Date: September 07, 2005 (last updated February 22, 2025)
The sslConnectTimeout function in ssl.c for Squid 2.5.STABLE10 and earlier allows remote attackers to cause a denial of service (segmentation fault) via certain crafted requests.
0
Attacker Value
Unknown

CVE-2005-1711

Disclosure Date: May 24, 2005 (last updated February 22, 2025)
Gibraltar Firewall 2.2 and earlier, when using the ClamAV update to 0.81 for Squid, uses a defunct ClamAV method to scan memory for viruses, which does not return an error code and prevents viruses from being detected.
0
Attacker Value
Unknown

CVE-2005-1519

Disclosure Date: May 11, 2005 (last updated February 22, 2025)
Squid 2.5 STABLE9 and earlier, when the DNS client port is unfiltered and the environment does not prevent IP spoofing, allows remote attackers to spoof DNS lookups.
0
Attacker Value
Unknown

CVE-2005-0813

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Buffer overflow in Initial Redirect (ir) Squid Proxy Plug-In 0.1 and 0.2 may allow attackers to cause a denial of service and execute arbitrary code via unknown vectors.
0
Attacker Value
Unknown

CVE-2005-0211

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Buffer overflow in wccp.c in Squid 2.5 before 2.5.STABLE7 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long WCCP packet, which is processed by a recvfrom function call that uses an incorrect length parameter.
0
Attacker Value
Unknown

CVE-2005-0173

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
squid_ldap_auth in Squid 2.5 and earlier allows remote authenticated users to bypass username-based Access Control Lists (ACLs) via a username with a space at the beginning or end, which is ignored by the LDAP server.
0
Attacker Value
Unknown

CVE-2005-0194

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Squid 2.5, when processing the configuration file, parses empty Access Control Lists (ACLs), including proxy_auth ACLs without defined auth schemes, in a way that effectively removes arguments, which could allow remote attackers to bypass intended ACLs if the administrator ignores the parser warnings.
0