Known vulnerabilities in squid (Alpine package)

Software CPE: cpe:2.3:o:alpine:squid_alpine_package:*:*:*:*:*:alpine_linux:*:*
Total vulnerabilities: 39
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting squid (Alpine package) squid (Alpine package) is affected by 39 known vulnerabilities: 7 high, 22 medium, 10 low Critical High Medium Low

Vulnerabilities (39)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU50364 - Improper Access Control
CVE-2020-15251
CWE-284 Medium
No
No
- 13.10.2020 SB2020101371
SB2020121115
#VU46118 - Improper Neutralization of CRLF Sequences in HTTP Headers ('HTTP Response Splitting')
CVE-2020-15811
CWE-113 Medium
No
No
- 28.08.2020 SB2020082807
SB2020083119
SB2020090501
and 12 more
#VU46117 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling')
CVE-2020-15810
CWE-444 Medium
No
No
- 28.08.2020 SB2020082807
SB2020083119
SB2020090501
and 12 more
#VU45957 - Resource exhaustion
CVE-2020-24606
CWE-400 Low
No
No
- 23.08.2020 SB2020082301
SB2020083119
SB2020090501
and 13 more
#VU29426 - Memory corruption
CVE-2020-13249
CWE-119 Medium
No
No
- 01.07.2020 SB2020070110
SB2020070111
SB2020052917
and 20 more
#VU27667 - Out-of-bounds write
CVE-2019-12521
CWE-787 Medium
No
No
- 11.05.2020 SB2020042377
SB2020051116
SB2020051133
and 7 more
#VU27666 - Integer overflow
CVE-2020-11945
CWE-190 High
No
No
- 11.05.2020 SB2020042377
SB2020051112
SB2020051113
and 15 more
#VU27665 - Out-of-bounds write
CVE-2019-12519
CWE-787 High
No
No
- 11.05.2020 SB2020042377
SB2020051112
SB2020051113
and 12 more
#VU25020 - Memory corruption
CVE-2020-8517
CWE-119 Medium
No
No
3.5.27-r4 07.02.2020 SB2020020702
SB2020022108
SB2020030601
and 6 more
#VU25019 - Out-of-bounds read
CVE-2019-12528
CWE-125 Medium
No
No
3.5.27-r4 07.02.2020 SB2020020702
SB2020022108
SB2020030601
and 13 more
#VU25018 - Memory corruption
CVE-2020-8450
CWE-119 High
No
No
3.5.27-r4 07.02.2020 SB2020020702
SB2020022108
SB2020030601
and 12 more
#VU25017 - Improper input validation
CVE-2020-8449
CWE-20 Medium
No
No
3.5.27-r4 07.02.2020 SB2020020702
SB2020022108
SB2020030601
and 12 more
#VU22589 - Exposure of sensitive information to an unauthorized actor
CVE-2019-18679
CWE-200 Low
No
No
3.5.27-r4 07.11.2019 SB2019110709
SB2019110710
SB2019112201
and 9 more
#VU20460 - Out-of-bounds read
CVE-2019-12529
CWE-125 Low
No
No
- 29.08.2019 SB2019082403
SB2019112201
SB2019112202
and 5 more
#VU20445 - Memory corruption
CVE-2019-12525
CWE-119 Medium
No
No
- 28.08.2019 SB2019082403
SB2019112201
SB2019112202
and 9 more
#VU19140 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-13345
CWE-79 Medium
No
No
3.5.27-r1, 3.5.27-r3 11.07.2019 SB2019071101
SB2019071804
SB2019082010
and 12 more
#VU12437 - Improper input validation
CVE-2018-1172
CWE-20 Low
No
No
3.5.27-r2 08.05.2018 SB2018051415
SB2018062025
#VU10384 - Improper Access Control
CVE-2018-1000027
CWE-284 Low
No
No
3.5.27-r0 06.02.2018 SB2018020610
SB2018022305
SB2018092106
and 6 more
#VU10383 - NULL Pointer Dereference
CVE-2018-1000024
CWE-476 Medium
No
No
3.5.27-r0 06.02.2018 SB2018012312
SB2018020610
SB2018022305
and 7 more
#VU8429 - Exposure of sensitive information to an unauthorized actor
CVE-2016-10002
CWE-200 Medium
No
No
3.5.23-r0 14.09.2017 SB2016121701
SB2017020602
SB2017012406
and 3 more


Showing elements 1 - 20 out of 39