Off-by-one error in the snmpHandleUdp function in snmp_core.cc in Squid 2.x and 3.x, when an SNMP port is configured, allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted UDP SNMP request, which triggers a heap-based buffer overflow.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Alpine Linux | — | Upgrade squid | Aug 30, 2017 | Sep 12, 2014 |
| Debian | — | Upgrade squid | Jul 30, 2024 | Sep 12, 2014 |
| Freebsd | — | Upgrade squid33Upgrade squidUpgrade squid32 | Dec 10, 2025 | Sep 18, 2014 |
| Gentoo Linux | — | Upgrade net-proxy/squid. | Oct 30, 2017 | Sep 12, 2014 |
| Oracle Solaris | — | Upgrade web/proxy/squid to version 3.5.5-0.175.2.13.0.3.0 on Solaris 11.2 | May 29, 2017 | Sep 12, 2014 |
| Redhat_linux | — | No solution exists | Jul 9, 2025 | Sep 9, 2014 |
| Suse | — | Upgrade squidUpgrade squid3 | Dec 18, 2015 | Sep 12, 2014 |
| Ubuntu | — | Upgrade squid3 | Mar 8, 2016 | Sep 12, 2014 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub