CVE-2025-59362: High severity Squid Squid vulnerability
Published Sep 26, 2025
·Updated
Squid through 7.1 mishandles ASN.1 encoding of long SNMP OIDs. This occurs in asnbuildobjid in lib/snmplib/asn1.c.
Affected Software
3 affected componentsFixes available
Remediation
Patch Available
Event History
Sep 26, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
RemedyDescriptionSeverityWeaknessAffected Software
Sep 28, 2025
Data Sourced
via Microsoft·01:02 AM
DescriptionSeverityWeakness
Data Sourced
via Microsoft·01:02 AM
Affected Software
Updated
via Microsoft·01:02 AM
DescriptionSeverity
Frequently Asked Questions
1
What is the severity of CVE-2025-59362?
CVE-2025-59362 has been classified with a high severity due to the potential mishandling of ASN.1 encoding in SNMP OIDs.
2
How do I fix CVE-2025-59362?
To fix CVE-2025-59362, upgrade to a version of Squid beyond 7.1 where the vulnerability is addressed.
3
What software is affected by CVE-2025-59362?
CVE-2025-59362 affects Squid versions up to and including 7.1.
4
What type of vulnerability is CVE-2025-59362?
CVE-2025-59362 is a vulnerability related to improper handling of ASN.1 encoding, specifically in SNMP OIDs.
5
Can CVE-2025-59362 lead to exploitation?
Yes, CVE-2025-59362 can potentially lead to exploitation if an attacker sends specially crafted SNMP OIDs.