First Last Prev Next    No search results available      Search page      Enter new bug
Bug#: 79495
Alias:
Product:
Component:
Status: RESOLVED
Resolution: FIXED
Assigned To: Gentoo Security <security@gentoo.org>
Hardware:
OS:
Version:
Priority:
Severity:
Reporter: Sune Kloppenborg Jeppesen <jaervosz@gentoo.org>
Add CC:
CC:
Remove selected CCs
URL:
Summary:
Status Whiteboard:
Keywords:
Flags: Requestee:
 
 
  ()

Filename Description Type Creator Created Size Actions
Create a New Attachment (proposed patch, testcase, etc.) View All

Bug 79495 depends on: 80201 Show dependency tree
Bug 79495 blocks:

Additional Comments: (this is where you put emerge --info)


Not eligible to see or edit group visibility for this bug.






View Bug Activity   |   Format For Printing   |   XML   |   Clone This Bug


Description:   Opened: 2005-01-25 10:40 0000
Time to bump patchset again:

http://www.squid-cache.org/Versions/v2/2.5/bugs/#squid-2.5.STABLE7-header_parsing
http://www.squid-cache.org/Versions/v2/2.5/bugs/#squid-2.5.STABLE7-response_splitting

------- Comment #1 From Sune Kloppenborg Jeppesen 2005-01-26 08:34:04 0000 -------
*** Bug 79581 has been marked as a duplicate of this bug. ***

------- Comment #2 From Sune Kloppenborg Jeppesen 2005-01-26 08:35:04 0000 -------
Opening since this is public.

Cyfred please bump.

------- Comment #3 From Andrew Bevitt 2005-01-26 18:20:50 0000 -------
See squild-2.5.7-r4 in cvs now

------- Comment #4 From Sune Kloppenborg Jeppesen 2005-01-26 21:57:45 0000 -------
Thx Andrew.

Security please vote on GLSA. We could combine it with the issue on bug #78776.

------- Comment #5 From Thierry Carrez (RETIRED) 2005-01-27 02:18:13 0000 -------
It's mostly cache poisoning and log poisoning... but adding them together they
may be worth a GLSA (a "Low" one). Voting YES.

------- Comment #6 From Thierry Carrez (RETIRED) 2005-01-28 06:09:05 0000 -------
squid-2.5.STABLE7-header_parsing is CAN-2005-0174
squid-2.5.STABLE7-response_splitting is CAN-2005-0175

squid-2.5.STABLE7-ldap_spaces from bug 78776 is CAN-2005-0173

------- Comment #7 From Sune Kloppenborg Jeppesen 2005-01-29 02:19:52 0000 -------
I vote YES -> GLSA

------- Comment #8 From Thierry Carrez (RETIRED) 2005-01-29 03:00:46 0000 -------
s390, mips: please mark stable to benefit from GLSA

------- Comment #9 From Thierry Carrez (RETIRED) 2005-01-31 06:41:08 0000 -------
Waiting for bug 80201 to send out GLSA

------- Comment #10 From Sune Kloppenborg Jeppesen 2005-02-02 12:38:09 0000 -------
GLSA 200502-04

------- Comment #11 From Joshua Kinard 2005-02-06 20:36:37 0000 -------
mips stable.

First Last Prev Next    No search results available      Search page      Enter new bug