<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-02T15:30:21.964450+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2023:6266</id>
    <title>ALSA-2023:6266 — Critical: squid security update</title>
    <updated>2026-10-02T15:30:22.318104+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:9: squid</p>
<p>Squid is a high-performance proxy caching server for web clients, supporting FTP, Gopher, and HTTP data objects.</p>
<p>Security Fix(es):</p>
<p>* SQUID-2023:3 squid: Denial of Service in HTTP Digest Authentication (CVE-2023-46847)
* SQUID-2023:1 squid: Request/Response smuggling in HTTP/1.1 and ICAP (CVE-2023-46846)
* SQUID-2023:5 squid: denial of Service in FTP (CVE-2023-46848)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2023:6266"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-07920</id>
    <title>bdu:2023-07920</title>
    <updated>2026-10-02T15:30:22.318165+00:00</updated>
    <content>bdu:2023-07920</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-07920"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2024-avi-0354</id>
    <title>certfr-2024-avi-0354 — De multiples vulnérabilités ont été découvertes dans &lt;span
class="textit"&gt;les produits Qnap&lt;/span&gt;. Elles permettent à…</title>
    <updated>2026-10-02T15:30:22.318183+00:00</updated>
    <content>certfr-2024-avi-0354</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2024-avi-0354"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-349193</id>
    <title>EUVD-2026-349193</title>
    <updated>2026-10-02T15:30:22.318200+00:00</updated>
    <content>EUVD-2026-349193</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-349193"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-46847</id>
    <title>fkie_cve-2023-46847</title>
    <updated>2026-10-02T15:30:22.318211+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Squid is vulnerable to a Denial of Service,  where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is configured to accept HTTP Digest Authentication.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-46847"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-46847</id>
    <title>gsd-2023-46847</title>
    <updated>2026-10-02T15:30:22.318231+00:00</updated>
    <content>gsd-2023-46847</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-46847"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/msrc_cve-2023-46847</id>
    <title>msrc_CVE-2023-46847 — Squid: denial of service in http digest authentication</title>
    <updated>2026-10-02T15:30:22.318241+00:00</updated>
    <content>msrc_CVE-2023-46847</content>
    <link href="https://cve.radiocsirt.org/vuln/msrc_cve-2023-46847"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2023-1776</id>
    <title>OESA-2023-1776 — squid security update</title>
    <updated>2026-10-02T15:30:22.318257+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: squid, openEuler:20.03-LTS-SP3: squid, openEuler:22.03-LTS: squid, openEuler:22.03-LTS-SP1: squid, openEuler:22.03-LTS-SP2: squid</p>
<p>Squid is a high-performance proxy caching server. It handles all requests in a single, non-blocking, I/O-driven process and keeps meta data and implements negative caching of failed requests.

Security Fix(es):

Description: Due to chunked decoder lenience Squid is vulnerable to
Request/Response smuggling attacks when parsing HTTP/1.1
and ICAP messages

Reference: https://github.com/squid-cache/squid/security/advisories/GHSA-j83v-w3p4-5cqh

Affected versions: 2.6-6.3. Patched in 6.4.(CVE-2023-46846)

Description: Due to a buffer overflow bug Squid is vulnerable to a Denial of
Service attack against HTTP Digest Authentication

Reference: https://github.com/squid-cache/squid/security/advisories/GHSA-phqj-m8gv-cq4g

Affected versions: 3.2.0.1-5.9, 6.0-6.3(CVE-2023-46847)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2023-1776"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:13398-1</id>
    <title>openSUSE-SU-2024:13398-1 — squid-6.4-1.1 on GA media</title>
    <updated>2026-10-02T15:30:22.318298+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>squid-6.4-1.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:13398-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2023:6267</id>
    <title>RHSA-2023:6267 — Red Hat Security Advisory: squid:4 security update</title>
    <updated>2026-10-02T15:30:22.318317+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>squid: Request/Response smuggling in HTTP/1.1 and ICAP squid: Denial of Service in HTTP Digest Authentication</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2023:6267"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2023:4381-1</id>
    <title>SUSE-SU-2023:4381-1 — Security update for squid</title>
    <updated>2026-10-02T15:30:22.318334+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for squid</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2023:4381-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-46847</id>
    <title>UBUNTU-CVE-2023-46847</title>
    <updated>2026-10-02T15:30:22.318349+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: squid3, Ubuntu:Pro:18.04:LTS: squid3, Ubuntu:20.04:LTS: squid, Ubuntu:22.04:LTS: squid</p>
<p>Squid is vulnerable to a Denial of Service,  where a remote attacker can perform buffer overflow attack by writing up to 2 MB of arbitrary data to heap memory when Squid is configured to accept HTTP Digest Authentication.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-46847"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2725</id>
    <title>WID-SEC-W-2023-2725 — Squid: Mehrere Schwachstellen</title>
    <updated>2026-10-02T15:30:22.318370+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann mehrere Schwachstellen in Squid ausnutzen, um einen Denial of Service Angriff durchzuführen oder Informationen offenzulegen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-2725"/>
  </entry>
</feed>
