← Back

CVE-2007-6239

nvd nist
Published: Dec 4, 2007Modified: Apr 23, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The "cache update reply processing" functionality in Squid 2.x before 2.6.STABLE17 and Squid 3.0 allows remote attackers to cause a denial of service (crash) via unknown vectors related to HTTP headers and an Array memory leak during requests for cached objects.

Affected (38)

1 product
Squid Web Proxy Cache
Configuration A
38 vulnerable
Vulnerable SoftwareAffected Versions
Squid
Version 2.0_patch2
Version 2.1_patch2
Version 2.3.stable4
Version 2.3.stable5
Version 2.4_stable2
Version 2.4_stable4
Version 2.4_stable6
Version 2.4_stable7
Version 2.5.stable11
Version 2.5.stable12
Version 2.5.stable13
Version 2.5.stable14
Version 2.5_.stable9
Version 2.5_stable10
Version 2.5_stable1
Version 2.5_stable3
Version 2.5_stable4
Version 2.5_stable5
Version 2.5_stable6
Version 2.5_stable7
Version 2.5_stable8
Version 2.6.stable12
Version 2.6.stable13
Version 2.6.stable14
Version 2.6.stable15
Version 2.6.stable16
Version 2.6.stable1
Version 2.6.stable2
Version 2.6.stable3
Version 2.6.stable4
Version 2.6.stable5
Version 2.6.stable6
Version 2.6.stable7
Version 2.6
Version 3.0
Version 3.0_pre1
Version 3.0_pre2
Version 3.0_pre3

References (54)

Source: secalert@redhat.com
PatchVendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Vendor Advisory
Source: secalert@redhat.com
Patch
Source: secalert@redhat.com
US Government Resource
Source: secalert@redhat.com
Patch
Source: secalert@redhat.com
PatchVendor Advisory
Source: secalert@redhat.com
ExploitVendor Advisory
Source: secalert@redhat.com
Source: secalert@redhat.com
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
US Government Resource
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Patch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitVendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.