First published: Thu Feb 05 2009(Updated: )
Squid 2.7 to 2.7.STABLE5, 3.0 to 3.0.STABLE12, and 3.1 to 3.1.0.4 allows remote attackers to cause a denial of service via an HTTP request with an invalid version number, which triggers a reachable assertion in (1) HttpMsg.c and (2) HttpStatusLine.c.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Squid Squid | =3.0.stable8 | |
Squid Squid | =3.0.stable9 | |
Squid Squid | =3.1.0.2 | |
Squid Squid | =2.7.stable3 | |
Squid Squid | =3.0.stable3 | |
Squid Squid | =3.1 | |
Squid Squid | =3.0.stable1 | |
Squid Squid | =3.0.stable10 | |
Squid Squid | =3.0.stable12 | |
Squid Squid | =2.7.stable4 | |
Squid Squid | =3.0.stable7 | |
Squid Squid | =2.7.stable5 | |
Squid Squid | =3.0.stable6 | |
Squid Squid | =2.7.stable2 | |
Squid Squid | =3.1.0.1 | |
Squid Squid | =3.0.stable2 | |
Squid Squid | =3.0.stable4 | |
Squid Squid | =3.0.stable11 | |
Squid Squid | =2.7.stable1 | |
Squid Squid | =3.0.stable5 | |
Squid Squid | =3.1.0.3 | |
Squid Squid | =3.1.0.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.