LWN.net Logo

squid: denial of service

Package(s):squid CVE #(s):CVE-2013-4115
Created:July 22, 2013 Updated:September 16, 2013
Description: From the Mageia advisory:

Due to incorrect data validation Squid is vulnerable to a buffer overflow attack when processing specially crafted HTTP requests. This problem allows any trusted client or client script who can generate HTTP requests to trigger a buffer overflow in Squid, resulting in a termination of the Squid service

Alerts:
Mageia MGASA-2013-0227 2013-07-21
Mageia MGASA-2013-0228 2013-07-21
Mandriva MDVSA-2013:199 2013-07-25
Fedora FEDORA-2013-13468 2013-08-02
Fedora FEDORA-2013-13493 2013-08-02
openSUSE openSUSE-SU-2013:1435-1 2013-09-13
openSUSE openSUSE-SU-2013:1436-1 2013-09-13
openSUSE openSUSE-SU-2013:1441-1 2013-09-13
openSUSE openSUSE-SU-2013:1443-1 2013-09-13
openSUSE openSUSE-SU-2013:1444-1 2013-09-13
Gentoo 201309-22 2013-09-27

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds