Vulnerabilities > Squid > Squid > 2.5.6

DATE CVE VULNERABILITY TITLE RISK
2005-10-20 CVE-2005-3258 Unspecified vulnerability in Squid
The rfc1738_do_escape function in ftp.c for Squid 2.5 STABLE11 and earlier allows remote FTP servers to cause a denial of service (segmentation fault) via certain "odd" responses.
network
low complexity
squid
5.0
2005-09-07 CVE-2005-2796 Remote Denial Of Service vulnerability in Squid Proxy SSLConnectTimeout
The sslConnectTimeout function in ssl.c for Squid 2.5.STABLE10 and earlier allows remote attackers to cause a denial of service (segmentation fault) via certain crafted requests.
network
low complexity
squid
5.0
2005-05-02 CVE-2005-0446 Remote Denial Of Service vulnerability in Squid Proxy DNS Name Resolver
Squid 2.5.STABLE8 and earlier allows remote attackers to cause a denial of service (crash) via certain DNS responses regarding (1) Fully Qualified Domain Names (FQDN) in fqdncache.c or (2) IP addresses in ipcache.c, which trigger an assertion failure.
network
low complexity
squid
5.0
2005-04-14 CVE-2005-0718 Remote Denial Of Service vulnerability in Squid Proxy Aborted Connection
Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (segmentation fault) by aborting the connection during a (1) PUT or (2) POST request, which causes Squid to access previously freed memory.
network
low complexity
squid
5.0
2005-02-07 CVE-2005-0175 Unspecified vulnerability in Squid
Squid 2.5 up to 2.5.STABLE7 allows remote attackers to poison the cache via an HTTP response splitting attack.
network
low complexity
squid
5.0
2005-02-07 CVE-2005-0174 Remote vulnerability in Squid Proxy Oversize HTTP Headers
Squid 2.5 up to 2.5.STABLE7 allows remote attackers to poison the cache or conduct certain attacks via headers that do not follow the HTTP specification, including (1) multiple Content-Length headers, (2) carriage return (CR) characters that are not part of a CRLF pair, and (3) header names containing whitespace characters.
network
low complexity
squid
5.0
2005-01-25 CVE-2005-0096 Remote Denial Of Service vulnerability in Squid Proxy NTLM Fakeauth_Auth Memory Leak
Memory leak in the NTLM fakeauth_auth helper for Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (memory consumption).
network
low complexity
squid
5.0
2005-01-15 CVE-2005-0095 Denial Of Service vulnerability in Squid Proxy Web Cache Communication Protocol
The WCCP message parsing code in Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (crash) via malformed WCCP messages with source addresses that are spoofed to reference Squid's home router and invalid WCCP_I_SEE_YOU cache numbers.
network
low complexity
squid
5.0
2005-01-15 CVE-2005-0094 Remote Buffer Overflow vulnerability in Squid Proxy Gopher To HTML
Buffer overflow in the gopherToHTML function in the Gopher reply parser for Squid 2.5.STABLE7 and earlier allows remote malicious Gopher servers to cause a denial of service (crash) via crafted responses.
network
low complexity
squid
5.0
2005-01-11 CVE-2005-0097 Remote Denial of Service vulnerability in Squid Proxy Malformed NTLM Type 3 Message
The NTLM component in Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (crash) via a malformed NTLM type 3 message that triggers a NULL dereference.
network
low complexity
squid
5.0