Описание
Security update for squid
squid was updated to fix one security issue.
This security issue was fixed:
- CVE-2014-9749: Nonce replay vulnerability in Digest authentication (bsc#949942).
Список пакетов
openSUSE Leap 42.1
squid-3.3.13-3.1
Ссылки
- E-Mail link for openSUSE-SU-2015:1835-1
- SUSE Security Ratings
Описание
Squid 3.4.4 through 3.4.11 and 3.5.0.1 through 3.5.1, when Digest authentication is used, allow remote authenticated users to retain access by leveraging a stale nonce, aka "Nonce replay vulnerability."
Затронутые продукты
openSUSE Leap 42.1:squid-3.3.13-3.1
Ссылки
- CVE-2014-9749
- SUSE Bug 949942
- SUSE Bug 993299