Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2015:1835-1

Опубликовано: 20 окт. 2015
Источник: suse-cvrf

Описание

Security update for squid

squid was updated to fix one security issue.

This security issue was fixed:

  • CVE-2014-9749: Nonce replay vulnerability in Digest authentication (bsc#949942).

Список пакетов

openSUSE Leap 42.1
squid-3.3.13-3.1

Описание

Squid 3.4.4 through 3.4.11 and 3.5.0.1 through 3.5.1, when Digest authentication is used, allow remote authenticated users to retain access by leveraging a stale nonce, aka "Nonce replay vulnerability."


Затронутые продукты
openSUSE Leap 42.1:squid-3.3.13-3.1

Ссылки