Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Squid Proxy Web Cache Communication Protocol Denial Of Service Vulnerability

A remote denial-of-service vulnerability affects the Web Cache Communication Protocol (WCCP) functionality of Squid Proxy. This issue is due to the application's failure to handle unexpected network data.

A remote attacker may leverage this issue to crash the affected Squid Proxy, denying service to legitimate users.

UPDATE: This issue was thought to result from a call to the 'recvfrom()' function. This has turned out to be incorrect; the buffer overflow from the call to 'recvfrom()' has been determined to be a new vulnerability (BID 12432).







 

Privacy Statement
Copyright 2009, SecurityFocus