CVE-2005-0446
EPSS 65.9%squid - mising input sanitising
Published: 5/2/2005Modified: 4/28/2026
Description
Squid 2.5.STABLE8 and earlier allows remote attackers to cause a denial of service (crash) via certain DNS responses regarding (1) Fully Qualified Domain Names (FQDN) in fqdncache.c or (2) IP addresses in ipcache.c, which trigger an assertion failure.
Affected packages (2)
- Debian/squidfrom 0, < 2.5.8-3
- Debian/squidfrom 0, < 2.4.6-2woody7