CVE-2002-0068

Squid 2.4 STABLE3 and earlier allows remote attackers to cause a denial of service (core dump) and possibly execute arbitrary code with an ftp:// URL with a larger number of special characters, which exceed the buffer when Squid URL-escapes the characters.

Scoring

CVSS base score
0.22
EPSS probability
5.56%
Published
2003-04-02
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs