First published: Tue Apr 01 2008(Updated: )
The arrayShrink function (lib/Array.c) in Squid 2.6.STABLE17 allows attackers to cause a denial of service (process exit) via unknown vectors that cause an array to shrink to 0 entries, which triggers an assert error. NOTE: this issue is due to an incorrect fix for CVE-2007-6239.
Credit: secalert@redhat.com secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Squid Squid | =2.6.stable17 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.