Unrated severityNVD Advisory· Published Mar 21, 2007· Updated Apr 23, 2026
CVE-2007-1560
CVE-2007-1560
Description
The clientProcessRequest() function in src/client_side.c in Squid 2.6 before 2.6.STABLE12 allows remote attackers to cause a denial of service (daemon crash) via crafted TRACE requests that trigger an assertion error.
Affected products
11cpe:2.3:a:squid:squid:2.6.stable1:*:*:*:*:*:*:*+ 10 more
- cpe:2.3:a:squid:squid:2.6.stable1:*:*:*:*:*:*:*
- cpe:2.3:a:squid:squid:2.6.stable10:*:*:*:*:*:*:*
- cpe:2.3:a:squid:squid:2.6.stable11:*:*:*:*:*:*:*
- cpe:2.3:a:squid:squid:2.6.stable2:*:*:*:*:*:*:*
- cpe:2.3:a:squid:squid:2.6.stable3:*:*:*:*:*:*:*
- cpe:2.3:a:squid:squid:2.6.stable4:*:*:*:*:*:*:*
- cpe:2.3:a:squid:squid:2.6.stable5:*:*:*:*:*:*:*
- cpe:2.3:a:squid:squid:2.6.stable6:*:*:*:*:*:*:*
- cpe:2.3:a:squid:squid:2.6.stable7:*:*:*:*:*:*:*
- cpe:2.3:a:squid:squid:2.6.stable8:*:*:*:*:*:*:*
- cpe:2.3:a:squid:squid:2.6.stable9:*:*:*:*:*:*:*
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
17- secunia.com/advisories/24611nvdPatchVendor Advisory
- www.squid-cache.org/Advisories/SQUID-2007_1.txtnvdPatchVendor Advisory
- secunia.com/advisories/24614nvdVendor Advisory
- secunia.com/advisories/24625nvdVendor Advisory
- secunia.com/advisories/24662nvdVendor Advisory
- secunia.com/advisories/24911nvdVendor Advisory
- www.vupen.com/english/advisories/2007/1035nvdVendor Advisory
- security.gentoo.org/glsa/glsa-200703-27.xmlnvd
- www.mandriva.com/security/advisoriesnvd
- www.novell.com/linux/security/advisories/2007_5_sr.htmlnvd
- www.redhat.com/support/errata/RHSA-2007-0131.htmlnvd
- www.securityfocus.com/bid/23085nvd
- www.securitytracker.com/idnvd
- www.squid-cache.org/Versions/v2/2.6/changesets/11349.patchnvd
- www.ubuntu.com/usn/usn-441-1nvd
- exchange.xforce.ibmcloud.com/vulnerabilities/33124nvd
- oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10291nvd
News mentions
0No linked articles in our index yet.