VYPR
Unrated severityNVD Advisory· Published Mar 8, 2005· Updated Apr 16, 2026

CVE-2005-0626

CVE-2005-0626

Description

Race condition in Squid 2.5.STABLE7 to 2.5.STABLE9, when using the Netscape Set-Cookie recommendations for handling cookies in caches, may cause Set-Cookie headers to be sent to other users, which allows attackers to steal the related cookies.

Affected products

3
  • cpe:2.3:a:squid:squid:2.5.stable5:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:squid:squid:2.5.stable5:*:*:*:*:*:*:*
    • cpe:2.3:a:squid:squid:2.5.stable6:*:*:*:*:*:*:*
    • cpe:2.3:a:squid:squid:2.5.stable7:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

7

News mentions

0

No linked articles in our index yet.