squid proxy server DoS
SecurityVulns ID:8902
Threat Level:
Description:assert() on invalid cache update reply.
Affected:SQUID : Squid 2.6
 SQUID : squid 2.5
CVE:CVE-2008-1612 (The arrayShrink function (lib/Array.c) in Squid 2.6.STABLE17 allows attackers to cause a denial of service (process exit) via unknown vectors that cause an array to shrink to 0 entries, which triggers an assert error. NOTE: this issue is due to an incorrect fix for CVE-2007-6239.)
Original documentdocumentUBUNTU, [USN-601-1] Squid vulnerability (15.04.2008)

