Updated squid packages fix CVE-2014-3609
Publication date: 05 Sep 2014Modification date: 05 Sep 2014
Type: security
Affected Mageia releases : 3 , 4
CVE: CVE-2014-3609
Description
Updated squid packages fix security vulnerability: Matthew Daley discovered that Squid 3 did not properly perform input validation in request parsing. A remote attacker could send crafted Range requests to cause a denial of service (CVE-2014-3609).
References
SRPMS
3/core
- squid-3.2.10-1.7.mga3
4/core
- squid-3.3.13-1.mga4