Zero-friction vulnerability management platform

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

CVE-2009-0478

CVE information

Published

13 years ago

Last Modified

3 years ago

CVSSv2.0 Severity

Medium

Impact Analysis

Description

Squid 2.7 to 2.7.STABLE5, 3.0 to 3.0.STABLE12, and 3.1 to 3.1.0.4 allows remote attackers to cause a denial of service via an HTTP request with an invalid version number, which triggers a reachable assertion in (1) HttpMsg.c and (2) HttpStatusLine.c..

CVSSv2.0 Score

Severity
Medium
Base Score
5/10
Exploit Score
10/10
Access Vector
Network
Access Complexity
Low
Authentication Required
None
Impact Score
2.9/10
Confidentiality Impact
None
Availability Impact
Partial
Integrity Impact
None

Products Affected

CPE Affected Vulnerable Excluding Edit
cpe:2.3:a:squid:squid:3.0.stable8:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.0.stable9:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.1.0.2:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:2.7.stable3:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.0.stable3:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.1:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.0.stable1:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.0.stable10:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.0.stable12:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:2.7.stable2:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:2.7.stable1:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.0.stable6:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.0.stable5:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.1.0.3:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:2.7.stable5:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.0.stable4:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.1.0.4:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.0.stable11:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.0.stable2:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:2.7.stable4:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.0.stable7:*:*:*:*:*:*:*
  Yes
- -
cpe:2.3:a:squid:squid:3.1.0.1:*:*:*:*:*:*:*
  Yes
- -