|
|
|
|
|
|
|
| |
MDVSA-2010:033: squid |
|
| This script is Copyright (C) 2010 Tenable Network Security, Inc. |
|
|
| Family | Mandriva Local Security Checks |
| Nessus Plugin ID | 44402 (mandriva_MDVSA-2010-033.nasl) |
| Bugtraq ID |
|
| CVE ID | CVE-2010-0308
|
|
| Description: |
Synopsis :
The remote host is missing the patch for the advisory MDVSA-2010:033 (squid).
Description :
A vulnerability have been discovered and corrected in Squid 2.x,
3.0 through 3.0.STABLE22, and 3.1 through 3.1.0.15, which allows
remote attackers to cause a denial of service (assertion failure)
via a crafted DNS packet that only contains a header (CVE-2010-0308).
This update provides a fix to this vulnerability.
See also :
http://wwwnew.mandriva.com/security/advisories?name=MDVSA-2010:033
Solution :
Update the affected package(s) using, for example, 'urpmi --update'.
Risk factor :
Medium / CVSS Base Score : 4.0
(CVSS2#AV:N/AC:L/Au:S/C:N/I:N/A:P)
|
|
|
|
|
|