Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CAN-2005-0194
Description:Squid 2.5, when processing the configuration file, parses empty Access Control Lists (ACLs), including proxy_auth ACLs without defined auth schemes, in a way that effectively removes arguments, which could allow remote attackers to bypass intended ACLs if the administrator ignores the parser warnings.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2005-0194
Bugtraq: 20050221 [USN-84-1] Squid vulnerabilities (Google Search)
http://marc.info/?l=bugtraq&m=110901183320453&w=2
CERT/CC vulnerability note: VU#260421
http://www.kb.cert.org/vuls/id/260421
Conectiva Linux advisory: CLA-2005:923
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000923
Debian Security Information: DSA-667 (Google Search)
http://www.debian.org/security/2005/dsa-667
http://fedoranews.org/updates/FEDORA--.shtml




© 1998-2025 E-Soft Inc. All rights reserved.