Skip to main content

CVE-2010-2951

CVSS Score Not Available
55.18%
MEDIUM RiskEPSS (98th percentile)

dns_internal.cc in Squid 3.1.6, when IPv6 DNS resolution is not enabled, accesses an invalid socket during an IPv4 TCP DNS query, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via vectors that trigger an IPv4 DNS response with the TC bit set.

Published: 10/12/2010
Modified: 4/11/2025
Back to CVE Lookup

Vulnerability Summary

EPSS Score (Exploitation Probability)

55.18%MEDIUM Exploitation Risk
98th percentile

This vulnerability has a 55.18% probability of being exploited in the next 30 days, ranking higher than 98% of all scored CVEs.