Описание
Buffer overflows in Squid before 2.4.STABLE6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code (1) via the MSNT auth helper (msnt_auth) when using denyusers or allowusers files, (2) via the gopher client, or (3) via the FTP server directory listing parser when HTML output is generated.
Buffer overflows in Squid before 2.4.STABLE6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code (1) via the MSNT auth helper (msnt_auth) when using denyusers or allowusers files, (2) via the gopher client, or (3) via the FTP server directory listing parser when HTML output is generated.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2002-0713
- http://marc.info/?l=bugtraq&m=102674543407606&w=2
- http://rhn.redhat.com/errata/RHSA-2002-051.html
- http://rhn.redhat.com/errata/RHSA-2002-130.html
- http://www.iss.net/security_center/static/9480.php
- http://www.iss.net/security_center/static/9481.php
- http://www.iss.net/security_center/static/9482.php
- http://www.linux-mandrake.com/en/security/2002/MDKSA-2002-044.php
- http://www.securityfocus.com/bid/5155
- http://www.securityfocus.com/bid/5156
- http://www.securityfocus.com/bid/5157
- http://www.squid-cache.org/Advisories/SQUID-2002_3.txt
- http://www.squid-cache.org/Versions/v2/2.4/bugs
EPSS
CVE ID
Связанные уязвимости
Buffer overflows in Squid before 2.4.STABLE6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code (1) via the MSNT auth helper (msnt_auth) when using denyusers or allowusers files, (2) via the gopher client, or (3) via the FTP server directory listing parser when HTML output is generated.
Buffer overflows in Squid before 2.4.STABLE6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code (1) via the MSNT auth helper (msnt_auth) when using denyusers or allowusers files, (2) via the gopher client, or (3) via the FTP server directory listing parser when HTML output is generated.
Buffer overflows in Squid before 2.4.STABLE6 allow remote attackers to ...
EPSS