https://seclists.org/oss-sec/2025/q4/140: [CVE-2025-54574] SQUID-2025:1 Buffer Overflow in URN Handling
Published Nov 5, 2025
·Updated
Affected Software
1 affected component
Squid Squid<=2.7.STABLE9, <=3.5.28, <=4.17, <=5.9, <=6.3
Frequently Asked Questions
1
What is the severity of CVE-2025-54574?
CVE-2025-54574 is considered a high-severity vulnerability due to the potential for buffer overflow attacks.
2
How do I fix CVE-2025-54574?
To fix CVE-2025-54574, you should update to the latest version of Squid that contains the necessary security patches.
3
What systems are affected by CVE-2025-54574?
CVE-2025-54574 affects all versions of Squid prior to the security patch that addresses the buffer overflow in URN handling.
4
What can an attacker potentially achieve with CVE-2025-54574?
An attacker could exploit CVE-2025-54574 to execute arbitrary code or cause a denial of service on affected systems.
5
How can I confirm if my system is vulnerable to CVE-2025-54574?
You can confirm your system's vulnerability to CVE-2025-54574 by checking for the version of Squid you are running and comparing it against the published advisory.