Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.51153
Category:Red Hat Local Security Checks
Title:RedHat Security Advisory RHSA-2004:591
Summary:NOSUMMARY
Description:Description:

The remote host is missing updates announced in
advisory RHSA-2004:591.

Squid is a full-featured Web proxy cache.

iDEFENSE reported a flaw in the squid SNMP module. This flaw could allow
an attacker who has the ability to send arbitrary packets to the SNMP port
to restart the server, causing it to drop all open connections. The Common
Vulnerabilities and Exposures project (cve.mitre.org) has assigned the name
CVE-2004-0918 to this issue.

All users of squid should update to this erratum package, which contains a
backport of the security fix for this vulnerability.

Solution:
Please note that this update is available via
Red Hat Network. To use Red Hat Network, launch the Red
Hat Update Agent with the following command: up2date

http://rhn.redhat.com/errata/RHSA-2004-591.html
http://www.idefense.com/application/poi/display?id=152&type=vulnerabilities

Risk factor : Medium

CVSS Score:
5.0

Cross-Ref: BugTraq ID: 11385
Common Vulnerability Exposure (CVE) ID: CVE-2004-0918
http://www.securityfocus.com/bid/11385
Conectiva Linux advisory: CLA-2005:923
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000923
https://www.redhat.com/archives/fedora-package-announce/2008-July/msg00122.html
http://fedoranews.org/updates/FEDORA--.shtml
http://www.gentoo.org/security/en/glsa/glsa-200410-15.xml
http://www.idefense.com/application/poi/display?id=152&type=vulnerabilities&flashstatus=false
http://marc.info/?l=bugtraq&m=109913064629327&w=2
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A10931
http://www.redhat.com/support/errata/RHSA-2004-591.html
SCO Security Bulletin: SCOSA-2005.16
ftp://ftp.sco.com/pub/updates/UnixWare/SCOSA-2005.16/SCOSA-2005.16.txt
http://secunia.com/advisories/30914
http://secunia.com/advisories/30967
SuSE Security Announcement: SUSE-SR:2008:014 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2008-07/msg00001.html
http://www.vupen.com/english/advisories/2008/1969/references
XForce ISS Database: squid-snmp-asnparseheader-dos(17688)
https://exchange.xforce.ibmcloud.com/vulnerabilities/17688
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.