Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 257586

Summary: DOS vulnerability for net-proxy/squid <2.7.6 <3.0.13 <3.1.0.5
Product: Gentoo Security Reporter: Eray Aslan <eras>
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Status: RESOLVED DUPLICATE    
Severity: normal    
Priority: High    
Version: unspecified   
Hardware: All   
OS: Linux   
URL: http://www.squid-cache.org/Advisories/SQUID-2009_1.txt
Whiteboard:
Package list:
Runtime testing required: ---

Description Eray Aslan gentoo-dev 2009-02-04 12:09:58 UTC
"Due to an internal error Squid is vulnerable to a denial
 of service attack when processing specially crafted requests.
 This problem allows any client to perform a denial of service
 attack on the Squid service."

Patches and problem description:
http://www.squid-cache.org/Advisories/SQUID-2009_1.txt

Reproducible: Always
Comment 1 Eray Aslan gentoo-dev 2009-02-04 12:13:36 UTC

*** This bug has been marked as a duplicate of bug 257585 ***