[Secure-testing-team] Bug#572553: CVE-2010-0639: HTCP DoS

Moritz Muehlenhoff jmm at debian.org
Thu Mar 4 20:49:54 UTC 2010


Package: squid
Version: 2.7.STABLE7-1
Severity: important
Tags: security

http://www.squid-cache.org/Advisories/SQUID-2010_2.txt

Since this a non-default issues with limited local impact I don't
think this needs to be fixed in a DSA. Still, you could fix this
through a stable point update.

Cheers,
        Moritz


-- System Information:
Debian Release: squeeze/sid
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: i386 (i686)

Kernel: Linux 2.6.32-2-686 (SMP w/1 CPU core)
Locale: LANG=C, LC_CTYPE=de_DE.ISO-8859-15 at euro (charmap=ISO-8859-15)
Shell: /bin/sh linked to /bin/bash

Versions of packages squid depends on:
ii  adduser                       3.112      add and remove users and groups
ii  debconf [debconf-2.0]         1.5.28     Debian configuration management sy
ii  libc6                         2.10.2-5   Embedded GNU C Library: Shared lib
ii  libcomerr2                    1.41.10-1  common error description library
pn  libdb4.6                      <none>     (no description available)
pn  libkrb53                      <none>     (no description available)
ii  libldap-2.4-2                 2.4.17-2.1 OpenLDAP libraries
ii  libpam0g                      1.1.1-2    Pluggable Authentication Modules l
ii  logrotate                     3.7.8-4    Log rotation utility
ii  lsb-base                      3.2-23     Linux Standard Base 3.2 init scrip
ii  netbase                       4.40       Basic TCP/IP networking system
pn  squid-common                  <none>     (no description available)

squid recommends no packages.

Versions of packages squid suggests:
pn  logcheck-database             <none>     (no description available)
pn  resolvconf                    <none>     (no description available)
pn  smbclient                     <none>     (no description available)
pn  squid-cgi                     <none>     (no description available)
pn  squidclient                   <none>     (no description available)
pn  winbind                       <none>     (no description available)





More information about the Secure-testing-team mailing list