![]() |
Startseite ▼ Bookkeeping
Online ▼ Sicherheits
Überprüfungs ▼
Verwaltetes
DNS ▼
Info
Bestellen/Erneuern
FAQ
AUP
Dynamic DNS Clients
Domaine konfigurieren Dyanmic DNS Update Password Netzwerk
Überwachung ▼
Enterprise
Erweiterte
Standard
Gratis Test
FAQ
Preis/Funktionszusammenfassung
Bestellen
Beispiele
Konfigurieren/Status Alarm Profile | ||
Test Kennung: | 1.3.6.1.4.1.25623.1.0.807452 |
Kategorie: | Denial of Service |
Titel: | Squid Multiple DoS Vulnerabilities (SQUID-2016:2) - Windows |
Zusammenfassung: | Squid is prone to multiple denial of service (DoS); vulnerabilities. |
Beschreibung: | Summary: Squid is prone to multiple denial of service (DoS) vulnerabilities. Vulnerability Insight: Multiple flaws exist due to: - The 'http.cc' script proceeds with the storage of certain data after a response parsing failure. - The Edge Side Includes (ESI) parser does not check buffer limits during XML parsing. - An improper appending of data to String objects. Vulnerability Impact: Successful exploitation will allow remote HTTP servers to cause a denial of service. Affected Software/OS: Squid version 3.x before 3.5.15 and 4.x before 4.0.7. Solution: Update to version 3.5.15, 4.0.7 or later. CVSS Score: 5.0 CVSS Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P |
Querverweis: |
Common Vulnerability Exposure (CVE) ID: CVE-2016-2571 Debian Security Information: DSA-3522 (Google Search) http://www.debian.org/security/2016/dsa-3522 https://security.gentoo.org/glsa/201607-01 http://www.openwall.com/lists/oss-security/2016/02/26/2 RedHat Security Advisories: RHSA-2016:2600 http://rhn.redhat.com/errata/RHSA-2016-2600.html http://www.securitytracker.com/id/1035101 SuSE Security Announcement: SUSE-SU-2016:1996 (Google Search) http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00010.html SuSE Security Announcement: SUSE-SU-2016:2089 (Google Search) http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00040.html SuSE Security Announcement: openSUSE-SU-2016:2081 (Google Search) http://lists.opensuse.org/opensuse-updates/2016-08/msg00069.html http://www.ubuntu.com/usn/USN-2921-1 https://usn.ubuntu.com/3557-1/ Common Vulnerability Exposure (CVE) ID: CVE-2016-2570 Common Vulnerability Exposure (CVE) ID: CVE-2016-2569 |
Copyright | Copyright (C) 2016 Greenbone AG |
Dies ist nur einer von 146377 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus. Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten. |