Computer Security
[EN] securityvulns.ru
no-pyccku



CVECVE-2010-0308
StatusCandidate
Descriptionlib/rfc1035.c in Squid 2.x, 3.0 through 3.0.STABLE22, and 3.1 through 3.1.0.15 allows remote attackers to cause a denial of service (assertion failure) via a crafted DNS packet that only contains a header.
SeverityMedium
CVSS score4
CVSS vector(AV:N/AC:L/Au:S/C:N/I:N/A:P)
PhaseAssigned (21.08.2010)
NVD:http://nvd.nist.gov/nvd.cfm?cvename=CVE-2010-0308
ReferencesBID : 37522
 CONFIRM : http://www.squid-cache.org/Advisories/SQUID-2010_1...
 MISC : http://events.ccc.de/congress/2009/Fahrplan/attach...
 MISC : http://www.squid-cache.org/Versions/v2/HEAD/change...
 MISC : http://www.squid-cache.org/Versions/v3/3.0/changes...
 MISC : http://www.squid-cache.org/Versions/v3/3.1/changes...
 OSVDB : 62044
 OVAL : oval:org.mitre.oval:def:11270
 SECTRACK : 1023520
 SECUNIA : 38451
 SECUNIA : 38455
 VUPEN : ADV-2010-0260
 XF : squid-dns-dos(56001)
SecurityVulns:squid proxy server DoS

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server