OSVDB ID: 10675

Title: Squid Web Proxy Cache asn_parse_header() Function DoS

Info

Disclosure

Oct 05, 2004

Discovery

Sep 15, 2004

Dates

Exploit

Unknown

Solution

Unknown

Description

Squid Web Proxy Cache contains a flaw that may allow a remote denial of service. The issue is triggered due to an ASN1 parsing error where certain header length combinations can bypass the validations performed by the ASN1 parser, eventually resulting in loss of availability for the service.

Classification

Location: Remote/Network Access Required
Attack Type: Denial of Service
Impact: Loss of Availability
Exploit: Exploit Unknown
Disclosure: OSVDB Verified

Solution

Upgrade to version Squid-2.5.STABLE7 or higher, as it has been reported to fix this vulnerability. It is also possible to correct the flaw by implementing the following workaround: disable SNMP support or filter the port that has SNMP processing activated (3401 by default) to allow only SNMP data from trusted hosts.

Products

Team Squid

Squid Web Proxy Cache

2.5-STABLE5

References

Credit

  • Anonymous - idlabs-advisoriesBrand New Doo Dooidefense.com - iDEFENSE


Direct URL: http://osvdb.org/36218