Loading
Race condition in Squid 2.5.STABLE7 to 2.5.STABLE9, when using the Netscape Set-Cookie recommendations for handling cookies in caches, may cause Set-Cookie headers to be sent to other users, which allows attackers to steal the related cookies.
Use Squid vendor hub and Squid product page to widen CVE-2005-0626 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2005-1711, CVE-2005-1519 and CVE-2009-0478 for nearby disclosures in the same product family.