Bug 2548703 (CVE-2026-61642) - CVE-2026-61642 squid: squid: Request Smuggling in HTTP Transfer-Encoding
Summary: CVE-2026-61642 squid: squid: Request Smuggling in HTTP Transfer-Encoding
Keywords:
Status: NEW
Alias: CVE-2026-61642
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
high
high
Target Milestone: ---
Assignee: Product Security DevOps Team
QA Contact:
URL:
Whiteboard:
Depends On: 2548716
Blocks:
TreeView+ depends on / blocked
 
Reported: 2026-10-09 15:53 UTC by OSIDB Bzimport
Modified: 2026-10-09 16:27 UTC (History)
5 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description OSIDB Bzimport 2026-10-09 15:53:38 UTC
A request smuggling vulnerability was found in Squid. Due to improper enforcement of behavioral workflow when processing HTTP/1.1 Transfer-Encoding headers, a trusted client can perform an HTTP request smuggling attack. This can bypass security mechanisms between the attacker and Squid. When an HTTP cache operates prior to the affected Squid instance, this also allows cache poisoning, enabling the attacker to store arbitrary malicious content at any URL for delivery to other clients.

Squid versions 3.3.0.1 through 7.5 are affected. The fix is available in version 7.6.


Note You need to log in before you can comment on or make changes to this bug.