Known vulnerabilities in squid (Debian package)
Vendor:
Debian
Software:
squid (Debian package)
Software CPE:
cpe:2.3:o:debian:squid_debian_package:*:*:*:*:*:debian_linux:*:*
Website:
https://www.debian.org/
Total vulnerabilities:
55
Public exploits:
3
Known exploited (KEV):
0
Highest CVSSv4 Score:
9.3
Breakdown by Severity Chart
6.13-2+deb13u2
6.13-2+deb13u1
5.7-2+deb12u4
4.6-1+deb10u8
4.6-1+deb10u9
4.6-1+deb10u10
4.13-2
4.13-3
4.13-4
4.13-5
4.13-6
4.13-7
4.13-8
4.13-9
4.13-10
4.13-10+deb11u4
5.1-2
5.2-1
5.5-1
5.5-1.1
5.6-1
5.7-1
5.7-2
6.1-1
6.1-2
6.3-1
6.5-1
6.6-1
6.8-1
6.9-1
6.10-1
6.12-1
6.13-1
6.13-2
7.1-1
5.7-2+deb12u3
5.7-2+deb12u2
5.7-2+deb12u1
4.13-10+deb11u3
4.13-10+deb11u2
4.13-10+deb11u1
4.6-1+deb10u7
4.6-1+deb10u6
4.6-1+deb10u5
4.6-1+deb10u4
4.13
4.13-1
4.12
4.12-1
4.12-1+b1
4.6-1+deb10u3
4.11-5
2.6.18-1+b1
2.7.STABLE6-1+b1
2.7.STABLE6-2+b1
2.7.STABLE9-2+b100
2.7.STABLE9-4+b1
2.7.STABLE9-4.1+b1
2.7.STABLE9-4.1+b2
3.5.6-1
3.5.7-1
3.5.10-1
3.5.12-1
3.5.12-1+b1
3.5.14-1
3.5.15-1
3.5.16-1
3.5.17-1
3.5.19-1
3.5.22-1
3.5.23-1
3.5.23-2
3.5.23-3
3.5.23-4
3.5.23-5
3.5.27-1
4.6-1+deb10u2
4.11-2~bpo10+1
4.11-3
4.11-4
4.11-2
3.5.23-5+deb9u1
4.11
4.11-1
4.10
4.6
4.10-1
4.9-1
4.9-2
4.6-1
4.6-1+deb10u1
4.6-2
4.8-1
4.5-2
4.4-1
4.3-1
2.2.5-3.2
2.2.5-4
2.4.6-1.1
2.4.6-2woody4
2.4.6-2woody7
2.4.6-2woody8
2.4.6-2woody9
2.4.6-2woody10
2.4.6-2woody11
2.5.9-10sarge1
2.5.9-10sarge2
2.5.9-10sarge5
2.6.4-2~bpo.1
2.6.5-6etch1
2.6.5-6etch2
2.6.5-6etch4
2.6.5-6etch5
2.6.18-1~bpo40+1
2.6.20-1~bpo40+1
2.7.STABLE3-1~bpo40+1
2.7.STABLE3-3~bpo40+1
2.7.STABLE3-4.1~bpo40+1
2.7.STABLE3-4.1lenny1
2.7.STABLE7-1~bpo50+1
2.7.STABLE9-4.1+deb7u2
2.7.STABLE9-4.1+deb7u3
4.1-1
4.2-1
4.2-2
4.0.24-1~exp16
4.0.24-1~exp15
4.0.23-1~exp8
4.0.21-1~exp5
2.7.STABLE9-5
2.7.STABLE9-2.1+deb6u1
1.0.beta16
1.0.7-1
1.0.12-1
1.0.16-1
1.0.17-1
1.0.18-1
1.0.19-1
1.0.20-1
1.1.1-1
1.1.9-1
1.1.10-1
1.1.11-1
1.1.16-1
1.1.17-1
1.1.20-1
1.1.20-2
1.1.21-1
1.2-beta22-1
1.2-beta22-2
1.2-beta23-1
1.2-beta25-1
2.0-1
2.0.2-1
2.1.1-1
2.1.2-1
2.2.2-1
2.2.3-1
2.2.4-1
2.2.5-1
2.2.5-2
2.2.5-3
2.3.4-1
2.3.4-2
2.4.1-1
2.4.1-2
2.4.1-3
2.4.1-4
2.4.1-5
2.4.1-6
2.4.2-1
2.4.3-1
2.4.3-2
2.4.4-1
2.4.6-1
2.4.6-1woody1
2.4.7-1
2.5.1-1
2.5.1-2
2.5.1-3
2.5.1-4
2.5.1-5
2.5.1-6
2.5.1-7
2.5.1-8
2.5.2-1
2.5.2-2
2.5.3-1
2.5.3-2
2.5.3-3
2.5.3-4
2.5.3-5
2.5.3-6
2.5.3-7
2.5.3-8
2.5.4-1
2.5.4-2
2.5.4-3
2.5.4-4
2.5.4-5
2.5.5-1
2.5.5-2
2.5.5-3
2.5.5-4
2.5.5-5
2.5.5-6
2.5.5-7
2.5.6-1
2.5.6-2
2.5.6-3
2.5.6-4
2.5.6-5
2.5.6-6
2.5.6-7
2.5.6-8
2.5.6-9
2.5.6-10
2.5.6-11
2.5.7-1
2.5.7-2
2.5.7-3
2.5.7-4
2.5.7-5
2.5.7-6
2.5.7-7
2.5.7-8
2.5.8-1
2.5.8-2
2.5.8-3
2.5.9-1
2.5.9-2
2.5.9-3
2.5.9-4
2.5.9-5
2.5.9-6
2.5.9-7
2.5.9-8
2.5.9-9
2.5.9-10
2.5.10-1
2.5.10-2
2.5.10-3
2.5.10-4
2.5.10-5
2.5.10-6
2.5.10-7
2.5.10-8
2.5.12-1
2.5.12-2
2.5.12-3
2.5.12-4
2.5.13-1
2.5.13-2
2.5.14-1
2.5.14-2
2.6.1-1
2.6.1-2
2.6.1-3
2.6.1-4
2.6.2-1
2.6.3-1
2.6.4-1
2.6.4-2
2.6.5-1
2.6.5-2
2.6.5-3
2.6.5-4
2.6.5-5
2.6.5-6
2.6.10-1
2.6.11-1
2.6.12-1
2.6.12-2
2.6.12-3
2.6.13-1
2.6.13-2
2.6.14-1
2.6.14-2
2.6.14-3
2.6.15-1
2.6.15-2
2.6.16-1
2.6.17-1
2.6.18-1
2.6.19-1
2.6.20-1
2.7.STABLE1-1
2.7.STABLE2-1
2.7.STABLE2-2
2.7.STABLE3-1
2.7.STABLE3-2
2.7.STABLE3-3
2.7.STABLE3-4
2.7.STABLE3-4.1
2.7.STABLE6-1
2.7.STABLE6-2
2.7.STABLE7-1
2.7.STABLE8-1
2.7.STABLE9-1
2.7.STABLE9-2
2.7.STABLE9-2.1
2.7.STABLE9-3
2.7.STABLE9-4
2.7.STABLE9-4.1
2.7.STABLE9-4.1+deb7u1
Vulnerabilities (55)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU135132 - Out-of-bounds read CVE-2026-47729 |
CWE-125 | Low | 6.13-2+deb13u2 | 24.06.2026 |
SB2026062448 SB2026062453 SB20260624111 and 1 more |
||
| #VU135131 - Heap-based Buffer Overflow CVE-2026-50012 |
CWE-122 | Low | 6.13-2+deb13u2 | 24.06.2026 |
SB2026062448 SB2026062453 SB20260624111 and 1 more |
||
| #VU124611 - Out-of-bounds read CVE-2026-33515 |
CWE-125 | Medium | 6.13-2+deb13u2 | 25.03.2026 |
SB20260325206 SB2026040350 SB2026040351 and 6 more |
||
| #VU124610 - Use After Free CVE-2026-33526 |
CWE-416 | Medium | 6.13-2+deb13u2 | 25.03.2026 |
SB20260325206 SB2026033197 SB2026040350 and 18 more |
||
| #VU117357 - Externally-generated error message containing sensitive information CVE-2025-62168 |
CWE-211 | Low | 5.7-2+deb12u4, 6.13-2+deb13u1 | 17.10.2025 |
SB2025101757 SB2025101803 SB2025101804 and 26 more |
||
| #VU113574 - Buffer over-read CVE-2025-54574 |
CWE-126 | Medium | 5.7-2+deb12u3 | 01.08.2025 |
SB2023102416 SB2025082141 SB2025082502 and 5 more |
||
| #VU93235 - Out-of-bounds write CVE-2024-37894 |
CWE-787 | Medium | 5.7-2+deb12u2 | 25.06.2024 |
SB2024062519 SB2024070286 SB2024070287 and 11 more |
||
| #VU87680 - Uncontrolled Recursion CVE-2024-25111 |
CWE-674 | Medium | 4.13-10+deb11u3, 5.7-2+deb12u1 | 20.03.2024 |
SB2024032067 SB2024032078 SB2024032634 and 24 more |
||
| #VU86547 - Improper input validation CVE-2024-25617 |
CWE-20 | Medium | 4.13-10+deb11u3, 5.7-2+deb12u1 | 15.02.2024 |
SB2024021536 SB2024030157 SB2024030601 and 20 more |
||
| #VU85722 - Expired pointer dereference CVE-2024-23638 |
CWE-825 | Medium | 4.13-10+deb11u3, 5.7-2+deb12u1 | 23.01.2024 |
SB2024012343 SB2024020237 SB2024020238 and 14 more |
||
| #VU84442 - Uncontrolled Recursion CVE-2023-50269 |
CWE-674 | Medium | 4.13-10+deb11u3, 5.7-2+deb12u1 | 15.12.2023 |
SB2023121502 SB2023122042 SB2023122043 and 20 more |
||
| #VU83629 - Out-of-bounds read CVE-2023-49285 |
CWE-125 | Medium | 4.13-10+deb11u3, 5.7-2+deb12u1 | 03.12.2023 |
SB2023120303 SB2023121253 SB2023121254 and 22 more |
||
| #VU83628 - Unchecked Return Value CVE-2023-49286 |
CWE-252 | Medium | 4.13-10+deb11u3, 5.7-2+deb12u1 | 03.12.2023 |
SB2023120303 SB2023121253 SB2023121254 and 20 more |
||
| #VU83379 - NULL Pointer Dereference CVE-2023-46728 |
CWE-476 | Medium | 4.13-10+deb11u3, 5.7-2+deb12u1 | 21.11.2023 |
SB2023090612 SB2023112157 SB2023112458 and 21 more |
||
| #VU82907 - Improper input validation CVE-2023-46848 |
CWE-20 | Medium | 4.13-10+deb11u3, 5.7-2+deb12u1 | 08.11.2023 |
SB2023102416 SB2023110805 SB2023110806 and 6 more |
||
| #VU82906 - Improper Certificate Validation CVE-2023-46724 |
CWE-295 | Medium | 4.13-10+deb11u3, 5.7-2+deb12u1 | 08.11.2023 |
SB2023102416 SB2023110805 SB2023110806 and 21 more |
||
| #VU82316 - Improper Handling of Structural Elements CVE-2023-5824 |
CWE-237 | Medium | 5.7-2+deb12u3 | 24.10.2023 |
SB2023102416 SB2023110745 SB2023110746 and 21 more |
||
| #VU82315 - Inconsistent Interpretation of HTTP Requests ('HTTP Request Smuggling') CVE-2023-46846 |
CWE-444 | Medium | 4.13-10+deb11u3, 5.7-2+deb12u1 | 24.10.2023 |
SB2023102416 SB2023110745 SB2023110746 and 25 more |
||
| #VU82313 - Memory corruption CVE-2023-46847 |
CWE-119 | Medium | 4.13-10+deb11u3, 5.7-2+deb12u1 | 24.10.2023 |
SB2023102416 SB2023110745 SB2023110746 and 30 more |
||
| #VU80476 - Buffer overflow CVE-2023-46724 |
CWE-120 | Medium | 4.13-10+deb11u3, 5.7-2+deb12u1 | 06.09.2023 |
SB2023090612 SB2023112157 SB2023120441 and 10 more |
Showing elements 1 - 20 out of 55