CVE-2025-54574

Squid is a caching proxy for the Web. In versions 6.3 and below, Squid is vulnerable to a heap buffer overflow and possible remote code execution attack when processing URN due to incorrect buffer management. This has been fixed in version 6.4. To work around this issue, disable URN access permissions.
CVSS

No CVSS.

Configurations

No configuration.

History

01 Aug 2025, 18:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-08-01 18:15

Updated : 2025-08-01 18:15


NVD link : CVE-2025-54574

Mitre link : CVE-2025-54574


JSON object : View

Products Affected

No product.

CWE
CWE-122

Heap-based Buffer Overflow