CVE-2009-3826
EPSS 3.8%
Description
Multiple buffer overflows in squidGuard 1.4 allow remote attackers to bypass intended URL blocking via a long URL, related to (1) the relationship between a certain buffer size in squidGuard and a certain buffer size in Squid and (2) a redirect URL that contains information about the originally requested URL.
How to fix CVE-2009-3826
To remediate CVE-2009-3826, upgrade the affected package to a fixed version below.
- Debian/squidguard—upgrade to 1.2.0-9 or later
Is CVE-2009-3826 being exploited?
Low — EPSS is 3.8%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 1.2.0-9