Squid 2.5 STABLE9 and earlier, when the DNS client port is unfiltered and the environment does not prevent IP spoofing, allows remote attackers to spoof DNS lookups.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Squid | Squid | * | 2.5_stable9 (including) |
| Red Hat Enterprise Linux 3 | RedHat | squid-7:2.5.STABLE3-6.3E.13 | * |
| Red Hat Enterprise Linux 4 | RedHat | squid-7:2.5.STABLE6-3.4E.9 | * |
| Red Hat Enterprise Linux AS (Advanced Server) version 2.1 | RedHat | * | |
| Red Hat Enterprise Linux ES version 2.1 | RedHat | * | |
| Red Hat Linux Advanced Workstation 2.1 | RedHat | * |