Unrated severityNVD Advisory· Published May 2, 2005· Updated Apr 16, 2026
CVE-2005-0211
CVE-2005-0211
Description
Buffer overflow in wccp.c in Squid 2.5 before 2.5.STABLE7 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long WCCP packet, which is processed by a recvfrom function call that uses an incorrect length parameter.
Affected products
7cpe:2.3:a:squid-cache:squid:2.5.stable4:*:*:*:*:*:*:*+ 5 more
- cpe:2.3:a:squid-cache:squid:2.5.stable4:*:*:*:*:*:*:*
- cpe:2.3:a:squid-cache:squid:2.5.stable5:*:*:*:*:*:*:*
- cpe:2.3:a:squid-cache:squid:2.5.stable6:*:*:*:*:*:*:*
- cpe:2.3:a:squid-cache:squid:2.5.stable1:*:*:*:*:*:*:*
- cpe:2.3:a:squid-cache:squid:2.5.stable2:*:*:*:*:*:*:*
- cpe:2.3:a:squid-cache:squid:2.5.stable3:*:*:*:*:*:*:*
- cpe:2.3:o:debian:debian_linux:3.0:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
15- www.debian.org/security/2005/dsa-667nvdPatchThird Party Advisory
- www.kb.cert.org/vuls/id/886006nvdPatchThird Party AdvisoryUS Government Resource
- www.squid-cache.org/Versions/v2/2.5/bugs/nvdPatchVendor Advisory
- www.squid-cache.org/Versions/v2/2.5/bugs/squid-2.5.STABLE7-wccp_buffer_overflow.patchnvdPatchVendor Advisory
- marc.infonvdThird Party Advisory
- securitytracker.com/idnvdThird Party AdvisoryVDB Entry
- www.redhat.com/support/errata/RHSA-2005-060.htmlnvdNot ApplicableThird Party Advisory
- www.redhat.com/support/errata/RHSA-2005-061.htmlnvdNot ApplicableThird Party Advisory
- www.securityfocus.com/bid/12432nvdThird Party AdvisoryVDB Entry
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9573nvdThird Party Advisory
- fedoranews.org/updates/FEDORA--.shtmlnvdBroken Link
- secunia.com/advisories/14076nvdPermissions Required
- www.mandriva.com/security/advisoriesnvdBroken Link
- www.novell.com/linux/security/advisories/2005_06_squid.htmlnvdBroken Link
- www.osvdb.org/13319nvdBroken Link
News mentions
0No linked articles in our index yet.