First published: Tue Dec 04 2007(Updated: )
Squid security advisory SQUID-2007:2 was published recently: <a href="http://www.squid-cache.org/Advisories/SQUID-2007_2.txt">http://www.squid-cache.org/Advisories/SQUID-2007_2.txt</a> Problem Description: Due to incorrect bounds checking Squid is vulnerable to a denial of service check during some cache update reply processing. Severity: This problem allows any client trusted to use the service to perform a denial of service attack on the Squid service.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Squid Web Proxy Cache | =2.0_patch2 | |
Squid Web Proxy Cache | =2.1_patch2 | |
Squid Web Proxy Cache | =2.3.stable4 | |
Squid Web Proxy Cache | =2.3.stable5 | |
Squid Web Proxy Cache | =2.4_stable2 | |
Squid Web Proxy Cache | =2.4_stable4 | |
Squid Web Proxy Cache | =2.4_stable6 | |
Squid Web Proxy Cache | =2.4_stable7 | |
Squid Web Proxy Cache | =2.5.stable11 | |
Squid Web Proxy Cache | =2.5.stable12 | |
Squid Web Proxy Cache | =2.5.stable13 | |
Squid Web Proxy Cache | =2.5.stable14 | |
Squid Web Proxy Cache | =2.5_.stable9 | |
Squid Web Proxy Cache | =2.5_stable1 | |
Squid Web Proxy Cache | =2.5_stable3 | |
Squid Web Proxy Cache | =2.5_stable4 | |
Squid Web Proxy Cache | =2.5_stable5 | |
Squid Web Proxy Cache | =2.5_stable6 | |
Squid Web Proxy Cache | =2.5_stable7 | |
Squid Web Proxy Cache | =2.5_stable8 | |
Squid Web Proxy Cache | =2.5_stable10 | |
Squid Web Proxy Cache | =2.6 | |
Squid Web Proxy Cache | =2.6.stable1 | |
Squid Web Proxy Cache | =2.6.stable2 | |
Squid Web Proxy Cache | =2.6.stable3 | |
Squid Web Proxy Cache | =2.6.stable4 | |
Squid Web Proxy Cache | =2.6.stable5 | |
Squid Web Proxy Cache | =2.6.stable6 | |
Squid Web Proxy Cache | =2.6.stable7 | |
Squid Web Proxy Cache | =2.6.stable12 | |
Squid Web Proxy Cache | =2.6.stable13 | |
Squid Web Proxy Cache | =2.6.stable14 | |
Squid Web Proxy Cache | =2.6.stable15 | |
Squid Web Proxy Cache | =2.6.stable16 | |
Squid Web Proxy Cache | =3.0 | |
Squid Web Proxy Cache | =3.0_pre1 | |
Squid Web Proxy Cache | =3.0_pre2 | |
Squid Web Proxy Cache | =3.0_pre3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-6239 has a severity rating that indicates it can lead to denial of service under specific conditions.
To fix CVE-2007-6239, upgrade to a patched version of Squid that addresses the bounds checking issue.
CVE-2007-6239 affects several Squid versions, including 2.0_patch2, 2.1_patch2, and 2.3.stable4 to 3.0_pre3.
CVE-2007-6239 is classified as a vulnerability that can result in a denial of service due to improper bounds checking.
There is no public information indicating active exploitation of CVE-2007-6239, but it is essential to apply patches promptly.