Summary: | <net-proxy/squid-3.5.10: Heap-based buffer overflow vulnerability (CVE-2014-6270) | ||
---|---|---|---|
Product: | Gentoo Security | Reporter: | GLSAMaker/CVETool Bot <glsamaker> |
Component: | Vulnerabilities | Assignee: | Gentoo Security <security> |
Status: | RESOLVED FIXED | ||
Severity: | normal | CC: | eras |
Priority: | Normal | ||
Version: | unspecified | ||
Hardware: | All | ||
OS: | Linux | ||
Whiteboard: | B2 [glsa cve] | ||
Package list: | Runtime testing required: | --- |
Description
GLSAMaker/CVETool Bot
![]() Original Advisory: http://www.squid-cache.org/Advisories/SQUID-2014_3.txt Upstream commits fixing the issue: http://bazaar.launchpad.net/~squid/squid/trunk/revision/13574 http://bazaar.launchpad.net/~squid/squid/trunk/revision/13582 The issue was fixed in >=net-proxy/squid-3.4.8. Assigned to existing GLSA. This issue was resolved and addressed in GLSA 201607-01 at https://security.gentoo.org/glsa/201607-01 by GLSA coordinator Aaron Bauman (b-man). |