diff -Naur vuxml/vuln.xml vuxml-squid/vuln.xml --- vuxml/vuln.xml 2020-04-02 21:32:40.000000000 +0200 +++ vuxml-squid/vuln.xml 2020-04-07 23:22:53.637597000 +0200 @@ -58,6 +58,45 @@ * Do not forget port variants (linux-f10-libxml2, libxml2, etc.) --> + + Squid4 -- multiple vulnerabilities + + + squid4 + 4.10 + + + + +

The Squid developers reports:

+
+

Improper Input Validation issues in HTTP Request + processing (CVE-2020-8449, CVE-2020-8450).

+

Information Disclosure issue in FTP Gateway + (CVE-2019-12528).

+

Buffer Overflow issue in ext_lm_group_acl helper + (CVE-2020-8517).

+
+ +
+ + http://lists.squid-cache.org/pipermail/squid-announce/2020-February/000107.html + https://nvd.nist.gov/vuln/detail/CVE-2020-8449 + https://nvd.nist.gov/vuln/detail/CVE-2020-8450 + https://nvd.nist.gov/vuln/detail/CVE-2019-12528 + https://nvd.nist.gov/vuln/detail/CVE-2020-8517 + CVE-2020-8449 + CVE-2020-8450 + CVE-2019-12528 + CVE-2020-8517 + ports/244026 + + + 2020-02-10 + 2020-04-07 + +
+ chromium -- multiple vulnerabilities