First published: Wed Mar 06 2024(Updated: )
Last updated 28 February 2025
Credit: security-advisories@github.com security-advisories@github.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/squid | <6.8 | 6.8 |
debian/squid | <=4.13-10+deb11u3 | 5.7-2+deb12u2 6.13-1 |
Squid Web Proxy Cache | >=3.5.27<6.8 | |
Red Hat Fedora | =38 | |
Red Hat Fedora | =39 | |
NetApp Blue XP Connector |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2024-25111 is classified as a high-severity vulnerability due to its potential to cause Denial of Service via an uncontrolled recursion bug.
To fix CVE-2024-25111, upgrade Squid to version 6.8 or later, or to version 5.7-2+deb12u2 or 6.12-1 on Debian systems.
CVE-2024-25111 affects Squid versions starting from 3.5.27 and prior to 6.8.
Yes, an attacker can exploit CVE-2024-25111 remotely to cause Denial of Service.
CVE-2024-25111 is associated with a Denial of Service attack targeting the HTTP Chunked decoder.