← Back

CVE-2005-0174

nvd nist
Published: Feb 7, 2005Modified: Apr 16, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:P/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

Squid 2.5 up to 2.5.STABLE7 allows remote attackers to poison the cache or conduct certain attacks via headers that do not follow the HTTP specification, including (1) multiple Content-Length headers, (2) carriage return (CR) characters that are not part of a CRLF pair, and (3) header names containing whitespace characters.

Affected (16)

Products: Squid: Squid
1 product
Squid
Configuration A
16 vulnerable
Vulnerable SoftwareAffected Versions
Squid
Version 2.5.6
Version 2.5.stable1
Version 2.5.stable2
Version 2.5.stable3
Version 2.5.stable4
Version 2.5.stable5
Version 2.5.stable6
Version 2.5.stable7
Version 2.5_.stable1
Version 2.5_.stable3
Version 2.5_.stable4
Version 2.5_.stable5
Version 2.5_.stable6
Version 2.5_stable3
Version 2.5_stable4
Version 2.5_stable9

References (26)

Source: cve@mitre.org
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryUS Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.