CVE Vulnerabilities

CVE-2005-1345

Published: May 02, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Squid 2.5.STABLE9 and earlier does not trigger a fatal error when it identifies missing or invalid ACLs in the http_access configuration, which could lead to less restrictive ACLs than intended by the administrator.

Affected Software

NameVendorStart VersionEnd Version
SquidSquid2.5.stable1 (including)2.5.stable1 (including)
SquidSquid2.5.stable2 (including)2.5.stable2 (including)
SquidSquid2.5.stable3 (including)2.5.stable3 (including)
SquidSquid2.5.stable4 (including)2.5.stable4 (including)
SquidSquid2.5.stable5 (including)2.5.stable5 (including)
SquidSquid2.5.stable6 (including)2.5.stable6 (including)
SquidSquid2.5.stable7 (including)2.5.stable7 (including)
SquidSquid2.5.stable8 (including)2.5.stable8 (including)
SquidSquid2.5.stable9 (including)2.5.stable9 (including)
Red Hat Enterprise Linux 3RedHatsquid-7:2.5.STABLE3-6.3E.13*
Red Hat Enterprise Linux 4RedHatsquid-7:2.5.STABLE6-3.4E.9*
SquidUbuntudapper*
SquidUbuntudevel*
SquidUbuntuedgy*
SquidUbuntufeisty*

References