Buffer overflows in Squid before 2.4.STABLE6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code (1) via the MSNT auth helper (msnt_auth) when using denyusers or allowusers files, (2) via the gopher client, or (3) via the FTP server directory listing parser when HTML output is generated.
References
Configurations
History
20 Nov 2024, 23:39
Type | Values Removed | Values Added |
---|---|---|
References | () ftp://ftp.caldera.com/pub/security/OpenLinux/CSSA-2002-046.0.txt - | |
References | () http://marc.info/?l=bugtraq&m=102674543407606&w=2 - | |
References | () http://rhn.redhat.com/errata/RHSA-2002-051.html - | |
References | () http://rhn.redhat.com/errata/RHSA-2002-130.html - Patch, Vendor Advisory | |
References | () http://www.iss.net/security_center/static/9480.php - | |
References | () http://www.iss.net/security_center/static/9481.php - | |
References | () http://www.iss.net/security_center/static/9482.php - | |
References | () http://www.linux-mandrake.com/en/security/2002/MDKSA-2002-044.php - Patch | |
References | () http://www.securityfocus.com/bid/5155 - | |
References | () http://www.securityfocus.com/bid/5156 - | |
References | () http://www.securityfocus.com/bid/5157 - | |
References | () http://www.squid-cache.org/Advisories/SQUID-2002_3.txt - Patch, Vendor Advisory | |
References | () http://www.squid-cache.org/Versions/v2/2.4/bugs/ - Patch |
Information
Published : 2002-07-26 04:00
Updated : 2024-11-20 23:39
NVD link : CVE-2002-0713
Mitre link : CVE-2002-0713
CVE.ORG link : CVE-2002-0713
JSON object : View
Products Affected
squid
- squid
CWE