CVE-2005-1345
Published May 2, 2005
Last updated 7 years ago
Overview
- Description
- Squid 2.5.STABLE9 and earlier does not trigger a fatal error when it identifies missing or invalid ACLs in the http_access configuration, which could lead to less restrictive ACLs than intended by the administrator.
- Source
- secalert@redhat.com
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:squid:squid:2.5.stable1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7183658C-0CDE-40B1-B203-8C365193724B" }, { "criteria": "cpe:2.3:a:squid:squid:2.5.stable2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E9C73406-9582-40F7-AFD9-7E9D6D94DE39" }, { "criteria": "cpe:2.3:a:squid:squid:2.5.stable3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0EDB690A-E0EF-4B11-83D7-B4A4C6B52DD6" }, { "criteria": "cpe:2.3:a:squid:squid:2.5.stable4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8D3F889C-2A50-4B91-B74D-1D32A2CAFFA5" }, { "criteria": "cpe:2.3:a:squid:squid:2.5.stable5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BCE944B8-B660-4FDB-A3F2-81F908329D88" }, { "criteria": "cpe:2.3:a:squid:squid:2.5.stable6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "75436484-5FCD-45D3-9262-63301A2024B9" }, { "criteria": "cpe:2.3:a:squid:squid:2.5.stable7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A8D59FA7-FD38-406A-923F-68297CC4B767" }, { "criteria": "cpe:2.3:a:squid:squid:2.5.stable8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AA3969B3-02F1-480A-8E72-CC50CD14B573" }, { "criteria": "cpe:2.3:a:squid:squid:2.5.stable9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6FD64CE0-686A-44F2-B537-6D41E47A8BF5" } ], "operator": "OR" } ] } ]