← Back

CVE-2009-0478

nvd nist
Published: Feb 8, 2009Modified: Apr 23, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

Squid 2.7 to 2.7.STABLE5, 3.0 to 3.0.STABLE12, and 3.1 to 3.1.0.4 allows remote attackers to cause a denial of service via an HTTP request with an invalid version number, which triggers a reachable assertion in (1) HttpMsg.c and (2) HttpStatusLine.c.

Affected (22)

Products: Squid: Squid
1 product
Squid
Configuration A
22 vulnerable
Vulnerable SoftwareAffected Versions
Squid
Version 2.7.stable1
Version 2.7.stable2
Version 2.7.stable3
Version 2.7.stable4
Version 2.7.stable5
Version 3.0.stable10
Version 3.0.stable11
Version 3.0.stable12
Version 3.0.stable1
Version 3.0.stable2
Version 3.0.stable3
Version 3.0.stable4
Version 3.0.stable5
Version 3.0.stable6
Version 3.0.stable7
Version 3.0.stable8
Version 3.0.stable9
Version 3.1.0.1
Version 3.1.0.2
Version 3.1.0.3
Version 3.1.0.4
Version 3.1

References (24)

Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
Vendor Advisory
Source: cve@mitre.org
ExploitPatch
Source: cve@mitre.org
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
ExploitPatch
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
Source: af854a3a-2127-422b-91ae-364da2661108
Source: af854a3a-2127-422b-91ae-364da2661108

Timeline

No history available yet.