<?xml version='1.0' encoding='UTF-8'?>
<?xml-stylesheet href="/static/style.xsl" type="text/xsl"?>
<feed xmlns="http://www.w3.org/2005/Atom" xml:lang="en">
  <id>https://cve.radiocsirt.org/rss/recent/all/10</id>
  <title>Most recent entries from all</title>
  <updated>2026-10-04T04:45:19.832535+00:00</updated>
  <author>
    <name>Vulnerability-Lookup</name>
    <email>csirt@opendfir.org</email>
  </author>
  <link href="https://cve.radiocsirt.org" rel="alternate"/>
  <generator uri="https://lkiesow.github.io/python-feedgen" version="1.0.0">python-feedgen</generator>
  <subtitle>Contains only the most 10 recent entries.</subtitle>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/alsa-2024:1375</id>
    <title>ALSA-2024:1375 — Important: squid:4 security update</title>
    <updated>2026-10-04T04:45:20.153558+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> AlmaLinux:8: libecap, AlmaLinux:8: libecap-devel, AlmaLinux:8: squid</p>
<p>Squid is a high-performance proxy caching server for web clients, supporting FTP, Gopher, and HTTP data objects.</p>
<p>Security Fix(es):</p>
<p>* squid: denial of service in HTTP header parser (CVE-2024-25617)
* squid: Denial of Service in HTTP Chunked Decoding (CVE-2024-25111)
* squid: denial of service in HTTP request parsing (CVE-2023-50269)</p>
<p>For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/alsa-2024:1375"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/bdu:2023-08827</id>
    <title>bdu:2023-08827</title>
    <updated>2026-10-04T04:45:20.153627+00:00</updated>
    <content>bdu:2023-08827</content>
    <link href="https://cve.radiocsirt.org/vuln/bdu:2023-08827"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/certfr-2023-avi-1030</id>
    <title>certfr-2023-avi-1030 — Une vulnérabilité a été découverte dans &lt;span
class="textit"&gt;Squid&lt;/span&gt;. Elle permet à un attaquant de provoquer un
d…</title>
    <updated>2026-10-04T04:45:20.153644+00:00</updated>
    <content>certfr-2023-avi-1030</content>
    <link href="https://cve.radiocsirt.org/vuln/certfr-2023-avi-1030"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/euvd-2026-240621</id>
    <title>EUVD-2026-240621</title>
    <updated>2026-10-04T04:45:20.153660+00:00</updated>
    <content>EUVD-2026-240621</content>
    <link href="https://cve.radiocsirt.org/vuln/euvd-2026-240621"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/fkie_cve-2023-50269</id>
    <title>fkie_cve-2023-50269</title>
    <updated>2026-10-04T04:45:20.153670+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Squid is a caching proxy for the Web. Due to an Uncontrolled Recursion bug in versions 2.6 through 2.7.STABLE9, versions 3.1 through 5.9, and versions 6.0.1 through 6.5, Squid may be vulnerable to a Denial of Service attack against HTTP Request parsing. This problem allows a remote client to perform Denial of Service attack by sending a large X-Forwarded-For header when the follow_x_forwarded_for feature is configured. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid's patch archives.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/fkie_cve-2023-50269"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/gsd-2023-50269</id>
    <title>gsd-2023-50269</title>
    <updated>2026-10-04T04:45:20.153695+00:00</updated>
    <content>gsd-2023-50269</content>
    <link href="https://cve.radiocsirt.org/vuln/gsd-2023-50269"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/oesa-2023-1947</id>
    <title>OESA-2023-1947 — squid security update</title>
    <updated>2026-10-04T04:45:20.153705+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> openEuler:20.03-LTS-SP1: squid, openEuler:20.03-LTS-SP3: squid, openEuler:20.03-LTS-SP4: squid, openEuler:22.03-LTS: squid, openEuler:22.03-LTS-SP1: squid, openEuler:22.03-LTS-SP2: squid</p>
<p>Squid is a high-performance proxy caching server. It handles all requests in a single, non-blocking, I/O-driven process and keeps meta data and implements negative caching of failed requests.

Security Fix(es):

Squid is a caching proxy for the Web. Due to an Uncontrolled Recursion bug in versions 2.6 through 2.7.STABLE9, versions 3.1 through 5.9, and versions 6.0.1 through 6.5, Squid may be vulnerable to a Denial of Service attack against HTTP Request parsing. This problem allows a remote client to perform Denial of Service attack by sending a large X-Forwarded-For header when the follow_x_forwarded_for feature is configured. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid&amp;apos;s patch archives.(CVE-2023-50269)</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/oesa-2023-1947"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/opensuse-su-2024:13631-1</id>
    <title>openSUSE-SU-2024:13631-1 — squid-6.6-2.1 on GA media</title>
    <updated>2026-10-04T04:45:20.153740+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>squid-6.6-2.1 on GA media</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/opensuse-su-2024:13631-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/rhsa-2024:0397</id>
    <title>RHSA-2024:0397 — Red Hat Security Advisory: squid:4 security update</title>
    <updated>2026-10-04T04:45:20.153759+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>squid: DoS against HTTP and HTTPS squid: Denial of Service in SSL Certificate validation squid: NULL pointer dereference in the gopher protocol code squid: Buffer over-read in the HTTP Message processing feature squid: Incorrect Check of Function Return Value In Helper Process management squid: denial of service in HTTP request parsing squid-cache: Squid Buffer Overflow</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/rhsa-2024:0397"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/suse-su-2024:0296-1</id>
    <title>SUSE-SU-2024:0296-1 — Security update for squid</title>
    <updated>2026-10-04T04:45:20.153785+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Security update for squid</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/suse-su-2024:0296-1"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-50269</id>
    <title>UBUNTU-CVE-2023-50269</title>
    <updated>2026-10-04T04:45:20.153799+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml"><p><strong>Affected:</strong> Ubuntu:Pro:16.04:LTS: squid3, Ubuntu:Pro:18.04:LTS: squid3, Ubuntu:20.04:LTS: squid, Ubuntu:22.04:LTS: squid, Ubuntu:24.04:LTS: squid</p>
<p>Squid is a caching proxy for the Web. Due to an Uncontrolled Recursion bug in versions 2.6 through 2.7.STABLE9, versions 3.1 through 5.9, and versions 6.0.1 through 6.5, Squid may be vulnerable to a Denial of Service attack against HTTP Request parsing. This problem allows a remote client to perform Denial of Service attack by sending a large X-Forwarded-For header when the follow_x_forwarded_for feature is configured. This bug is fixed by Squid version 6.6. In addition, patches addressing this problem for the stable releases can be found in Squid's patch archives.</p></div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/ubuntu-cve-2023-50269"/>
  </entry>
  <entry>
    <id>https://cve.radiocsirt.org/vuln/wid-sec-w-2023-3150</id>
    <title>WID-SEC-W-2023-3150 — Squid: Schwachstelle ermöglicht Denial of Service</title>
    <updated>2026-10-04T04:45:20.153826+00:00</updated>
    <content type="xhtml">
      <div xmlns="http://www.w3.org/1999/xhtml">
        <p>Ein entfernter, anonymer Angreifer kann eine Schwachstelle in Squid ausnutzen, um einen Denial of Service Angriff durchzuführen.</p>
      </div>
    </content>
    <link href="https://cve.radiocsirt.org/vuln/wid-sec-w-2023-3150"/>
  </entry>
</feed>
