Unrated severityNVD Advisory· Published Mar 8, 2005· Updated Apr 16, 2026
CVE-2005-0626
CVE-2005-0626
Description
Race condition in Squid 2.5.STABLE7 to 2.5.STABLE9, when using the Netscape Set-Cookie recommendations for handling cookies in caches, may cause Set-Cookie headers to be sent to other users, which allows attackers to steal the related cookies.
Affected products
3cpe:2.3:a:squid:squid:2.5.stable5:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:squid:squid:2.5.stable5:*:*:*:*:*:*:*
- cpe:2.3:a:squid:squid:2.5.stable6:*:*:*:*:*:*:*
- cpe:2.3:a:squid:squid:2.5.stable7:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
7- www.squid-cache.org/Versions/v2/2.5/bugs/nvdVendor Advisory
- fedoranews.org/updates/FEDORA--.shtmlnvd
- www.redhat.com/support/errata/RHSA-2005-415.htmlnvd
- www.securityfocus.com/bid/12716nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/19581nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11169nvd
- usn.ubuntu.com/93-1/nvd
News mentions
0No linked articles in our index yet.