diff options
author | madpilot <madpilot@FreeBSD.org> | 2014-09-18 21:20:57 +0800 |
---|---|---|
committer | madpilot <madpilot@FreeBSD.org> | 2014-09-18 21:20:57 +0800 |
commit | 6d546da2d52f499b62a6abbae227f0d31bff9094 (patch) | |
tree | 2d10bf45851571b782c97d24db89224f1d022f2a /security/vuxml | |
parent | 838c8d6895146ac475397e1c58d6b8a1dac07a15 (diff) | |
download | freebsd-ports-gnome-6d546da2d52f499b62a6abbae227f0d31bff9094.tar.gz freebsd-ports-gnome-6d546da2d52f499b62a6abbae227f0d31bff9094.tar.zst freebsd-ports-gnome-6d546da2d52f499b62a6abbae227f0d31bff9094.zip |
Document new squid vulnerability.
PR: 193737
Submitted by: timp87 at gmail.com
MFH: 2014Q3
Diffstat (limited to 'security/vuxml')
-rw-r--r-- | security/vuxml/vuln.xml | 35 |
1 files changed, 35 insertions, 0 deletions
diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 41082e2e563b..832552af817f 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -57,6 +57,41 @@ Notes: --> <vuxml xmlns="http://www.vuxml.org/apps/vuxml-1"> + <vuln vid="d3324c55-3f11-11e4-ad16-001999f8d30b"> + <topic>squid -- Buffer overflow in SNMP processing</topic> + <affects> + <package> + <name>squid</name> + <range><lt>3.4.8</lt></range> + </package> + <package> + <name>squid32</name> + <range><gt>0</gt></range> + </package> + <package> + <name>squid33</name> + <range><lt>3.3.13_2</lt></range> + </package> + </affects> + <description> + <body xmlns="http://www.w3.org/1999/xhtml"> + <p>The squid-cache project reports:</p> + <blockquote cite="http://www.squid-cache.org/Advisories/SQUID-2014_3.txt"> + <p>Due to incorrect buffer management Squid can be caused + by an attacker to write outside its allocated SNMP buffer.</p> + </blockquote> + </body> + </description> + <references> + <url>http://www.squid-cache.org/Advisories/SQUID-2014_3.txt</url> + <cvename>CVE-2014-6270</cvename> + </references> + <dates> + <discovery>2014-09-15</discovery> + <entry>2014-09-18</entry> + </dates> + </vuln> + <vuln vid="38242d51-3e58-11e4-ac2f-bcaec565249c"> <topic>dbus -- multiple vulnabilities</topic> <affects> |