Squid 'cachemgr.cgi' Incomplete Fix Remote Denial of Service Vulnerability
BID:57646
Info
Squid 'cachemgr.cgi' Incomplete Fix Remote Denial of Service Vulnerability
| Bugtraq ID: | 57646 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: |
CVE-2013-0189 CVE-2013-0189 |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 31 2013 12:00AM |
| Updated: | Apr 13 2015 08:25PM |
| Credit: | Coverity Scan Project |
| Vulnerable: |
Ubuntu Ubuntu Linux 12.04 LTS i386 Ubuntu Ubuntu Linux 12.04 LTS amd64 Ubuntu Ubuntu Linux 11.10 i386 Ubuntu Ubuntu Linux 11.10 amd64 Ubuntu Ubuntu Linux 10.04 sparc Ubuntu Ubuntu Linux 10.04 powerpc Ubuntu Ubuntu Linux 10.04 i386 Ubuntu Ubuntu Linux 10.04 ARM Ubuntu Ubuntu Linux 10.04 amd64 Squid-Cache Squid 3.1.5 Squid-Cache Squid 3.1.4 Squid-Cache Squid 3.1 .5 Squid-Cache Squid 3.1 .4 Squid-Cache Squid 3.1 .15 Squid-Cache Squid 3.1.7 Squid-Cache Squid 3.1.6 Squid-Cache Squid 3.1.5.1 Squid-Cache Squid 3.1.3 Squid-Cache Squid 3.1.2 Squid-Cache Squid 3.1.1 Squid-Cache Squid 3.1.0.9 Squid-Cache Squid 3.1.0.8 Squid-Cache Squid 3.1.0.7 Squid-Cache Squid 3.1.0.6 Squid-Cache Squid 3.1.0.3 Squid-Cache Squid 3.1.0.2 Squid-Cache Squid 3.1.0.18 Squid-Cache Squid 3.1.0.17 Squid-Cache Squid 3.1.0.16 Squid-Cache Squid 3.1.0.14 Squid-Cache Squid 3.1.0.13 Squid-Cache Squid 3.1.0.12 Squid-Cache Squid 3.1.0.11 Squid-Cache Squid 3.1.0.10 Squid-Cache Squid 3.1.0.1 Squid-Cache Squid 3.1 Mandriva Linux Mandrake 2011 x86_64 Mandriva Linux Mandrake 2011 MandrakeSoft Enterprise Server 5 x86_64 MandrakeSoft Enterprise Server 5 Gentoo Linux Debian Linux 6.0 sparc Debian Linux 6.0 s/390 Debian Linux 6.0 powerpc Debian Linux 6.0 mips Debian Linux 6.0 ia-64 Debian Linux 6.0 ia-32 Debian Linux 6.0 arm Debian Linux 6.0 amd64 Canonical Ubuntu Linux 10.04 - Lts |
| Not Vulnerable: | |
Solution / Fix
Squid 'cachemgr.cgi' Incomplete Fix Remote Denial of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
MandrakeSoft Enterprise Server 5 x86_64
MandrakeSoft Enterprise Server 5
Mandriva Linux Mandrake 2011 x86_64
Mandriva Linux Mandrake 2011
Mandriva Business Server 1 X86 64
Solution:
Updates are available. Please see the references for more information.
MandrakeSoft Enterprise Server 5 x86_64
-
Mandriva squid-3.0-22.6mdvmes5.2.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva squid-cachemgr-3.0-22.6mdvmes5.2.x86_64.rpm
http://www.mandriva.com/en/downloads/
MandrakeSoft Enterprise Server 5
-
Mandriva squid-3.0-22.6mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva squid-cachemgr-3.0-22.6mdvmes5.2.i586.rpm
http://www.mandriva.com/en/downloads/
Mandriva Linux Mandrake 2011 x86_64
-
Mandriva squid-3.1.15-1.3-mdv2011.0.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva squid-cachemgr-3.1.15-1.3-mdv2011.0.x86_64.rpm
http://www.mandriva.com/en/downloads/
Mandriva Linux Mandrake 2011
-
Mandriva squid-3.1.15-1.3-mdv2011.0.i586.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva squid-cachemgr-3.1.15-1.3-mdv2011.0.i586.rpm
http://www.mandriva.com/en/downloads/
Mandriva Business Server 1 X86 64
-
Mandriva squid-3.1.19-5.2.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/ -
Mandriva squid-cachemgr-3.1.19-5.2.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/
References
Squid 'cachemgr.cgi' Incomplete Fix Remote Denial of Service Vulnerability
References:
References:
- Bug 895972 - (CVE-2013-0189) CVE-2013-0189 squid: Incomplete fix for the CVE-201 (Red Hat Bugzilla)
- Multiple vulnerabilities in Squid (Oracle)
- Squid Versions (Squid)
- Squid Proxy Cache Security Update Advisory SQUID-2012:1 (Coverity Scan Project)