First published: Sat Jan 15 2005(Updated: )
The WCCP message parsing code in Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (crash) via malformed WCCP messages with source addresses that are spoofed to reference Squid's home router and invalid WCCP_I_SEE_YOU cache numbers.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Squid Web Proxy Cache | =2.0_patch2 | |
Squid Web Proxy Cache | =2.1_patch2 | |
Squid Web Proxy Cache | =2.3_.stable4 | |
Squid Web Proxy Cache | =2.3_.stable5 | |
Squid Web Proxy Cache | =2.3_stable5 | |
Squid Web Proxy Cache | =2.4 | |
Squid Web Proxy Cache | =2.4_.stable2 | |
Squid Web Proxy Cache | =2.4_.stable6 | |
Squid Web Proxy Cache | =2.4_.stable7 | |
Squid Web Proxy Cache | =2.4_stable7 | |
Squid Web Proxy Cache | =2.5.6 | |
Squid Web Proxy Cache | =2.5.stable1 | |
Squid Web Proxy Cache | =2.5.stable2 | |
Squid Web Proxy Cache | =2.5.stable3 | |
Squid Web Proxy Cache | =2.5.stable4 | |
Squid Web Proxy Cache | =2.5.stable5 | |
Squid Web Proxy Cache | =2.5.stable6 | |
Squid Web Proxy Cache | =2.5.stable7 | |
Squid Web Proxy Cache | =2.5_.stable1 | |
Squid Web Proxy Cache | =2.5_.stable3 | |
Squid Web Proxy Cache | =2.5_.stable4 | |
Squid Web Proxy Cache | =2.5_.stable5 | |
Squid Web Proxy Cache | =2.5_.stable6 | |
Squid Web Proxy Cache | =2.5_stable3 | |
Squid Web Proxy Cache | =2.5_stable4 | |
Squid Web Proxy Cache | =2.5_stable9 | |
Squid Web Proxy Cache | =2.6.stable1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-0095 has a severity rating that indicates it allows for denial of service attacks, potentially crashing affected Squid instances.
To fix CVE-2005-0095, upgrade to a version of Squid that is not vulnerable, specifically version 2.5.STABLE8 or later.
CVE-2005-0095 affects Squid versions up to 2.5.STABLE7, including various earlier patches and stable releases.
CVE-2005-0095 is a denial of service vulnerability that can be exploited through malformed WCCP messages.
Yes, CVE-2005-0095 can be exploited remotely by attackers sending specially crafted WCCP messages.