Oval Definition:oval:org.mitre.oval:tst:40327
Comment:squid is earlier than 7:2.6.STABLE21-6.el5
Type:rpminfo_testNamespace:linux
Check_Existence:at_least_one_existsCheck:at least one
State Operator:AND
References
Object:oval:org.mitre.oval:obj:14403
State:oval:org.mitre.oval:ste:11398
Referencing Definitions
Definition IDClassTitleLast Modified
oval:org.mitre.oval:def:10592
V
The strListGetItem function in src/HttpHeaderTools.c in Squid 2.7 allows remote attackers to cause a denial of service via a crafted auth header with certain comma delimiters that trigger an infinite loop of calls to the strcspn function.
2013-04-29
oval:org.mitre.oval:def:11270
V
lib/rfc1035.c in Squid 2.x, 3.0 through 3.0.STABLE22, and 3.1 through 3.1.0.15 allows remote attackers to cause a denial of service (assertion failure) via a crafted DNS packet that only contains a header.
2013-04-29
BACK