First published: Tue Jul 23 2002(Updated: )
Buffer overflows in Squid before 2.4.STABLE6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code (1) via the MSNT auth helper (msnt_auth) when using denyusers or allowusers files, (2) via the gopher client, or (3) via the FTP server directory listing parser when HTML output is generated.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Squid Squid | <=2.4.stable6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.