CVE-2013-0189: Canonical Ubuntu Linux

Medium severity, CVSS 5.0. EPSS: 23% chance of exploitation in the next 30 days.

cachemgr.cgi in Squid 3.1.x and 3.2.x, possibly 3.1.22, 3.2.4, and other versions, allows remote attackers to cause a denial of service (resource consumption) via a crafted request. NOTE: this issue is due to an incorrect fix for CVE-2012-5643, possibly involving an incorrect order of arguments or incorrect comparison.

Affected products

  • Canonical Ubuntu Linux: version 10.04 only; version 11.10 only; version 12.04 only; version 12.10 only
  • Squid-Cache Squid: version 3.1 only; version 3.1.0.1 only; version 3.1.0.2 only; version 3.1.0.3 only; version 3.1.0.4 only; version 3.1.0.5 only; …

Published 2013-02-08. Last modified 2026-06-16.