CVE-2015-0881
EPSS 4.4%Published: 2/20/2015Modified: 4/28/2026
Description
CRLF injection vulnerability in Squid before 3.1.1 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a crafted header in a response.
Affected packages (1)
- Debian/squidfrom 0, < 4.1-1