SCIENTIFIC-LINUX-ERRATA Archives

June 2014

SCIENTIFIC-LINUX-ERRATA@LISTSERV.FNAL.GOV

Options: Use Monospaced Font
Show Text Part by Default
Show All Mail Headers

Message: [<< First] [< Prev] [Next >] [Last >>]
Topic: [<< First] [< Prev] [Next >] [Last >>]
Author: [<< First] [< Prev] [Next >] [Last >>]

Print Reply
Subject:
From:
Pat Riehecky <[log in to unmask]>
Reply To:
Date:
Tue, 3 Jun 2014 17:21:41 +0000
Content-Type:
text/plain
Parts/Attachments:
text/plain (25 lines)
Synopsis:          Moderate: squid security update
Advisory ID:       SLSA-2014:0597-1
Issue Date:        2014-06-03
CVE Numbers:       CVE-2014-0128
--

A denial of service flaw was found in the way Squid processed certain
HTTPS requests when the SSL Bump feature was enabled. A remote attacker
could send specially crafted requests that could cause Squid to crash.
(CVE-2014-0128)

After installing this update, the squid service will be restarted
automatically.
--

SL6
  x86_64
    squid-3.1.10-20.el6_5.3.x86_64.rpm
    squid-debuginfo-3.1.10-20.el6_5.3.x86_64.rpm
  i386
    squid-3.1.10-20.el6_5.3.i686.rpm
    squid-debuginfo-3.1.10-20.el6_5.3.i686.rpm

- Scientific Linux Development Team

ATOM RSS1 RSS2