Secunia - Stay Secure
Home Corporate Website Jobs Updated Mailing Lists RSS Blog  Online Shop Advertise
Software Inspectors
  Scan Online
  Personal (PSI)
  Network (NSI 2.0)

Solutions For
  Security Professionals
  Security Vendors

Free Solutions For
  Open Communities
  Journalists & Media

Secunia Advisories
  Search
  Historic Advisories
  Listed By Product
  Listed By Vendor
  Statistics / Graphs
  Secunia Research
  Report Vulnerability
  About Advisories

Virus Information
  Chronological List
  Last 10 Virus Alerts
  About Virus Information

Secunia Customers
  Customer Area


Ubuntu update for squid Advisory Available in Danish 

Secunia Advisory: SA16807  
Release Date: 2005-09-13

Critical:
Moderately critical
Impact: DoS
Where: From remote
Solution Status: Vendor Patch

OS:Ubuntu Linux 4.10
Ubuntu Linux 5.04


CVE reference:CVE-2005-2794 (Secunia mirror)
CVE-2005-2796 (Secunia mirror)

Want to know the next time vulnerabilities are fixed in this product?
- Companies can be alerted via email and SMS!


Description:
Ubuntu has issued an update for squid. This fixes two vulnerabilities, which potentially can be exploited by malicious people to cause a DoS (Denial of Service).

For more information:
SA16708
SA16674

Solution:
Apply updated packages.

-- Ubuntu 4.10 (Warty Warthog) --

Source archives:

http://security.ubuntu.com/ubuntu/poo...squid/squid_2.5.5-6ubuntu0.10.diff.gz
Size/MD5: 284164 ce36b166233fd9946e920556da79e75d
http://security.ubuntu.com/ubuntu/pool/main/s/squid/squid_2.5.5-6ubuntu0.10.dsc
Size/MD5: 654 017d00f58a7841262bfb2d8f50cb6e0f
http://security.ubuntu.com/ubuntu/pool/main/s/squid/squid_2.5.5.orig.tar.gz
Size/MD5: 1363967 6c7f3175b5fa04ab5ee68ce752e7b500

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...quid-common_2.5.5-6ubuntu0.10_all.deb
Size/MD5: 191164 3c039b5284111aab880c85a156824de2

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

http://security.ubuntu.com/ubuntu/poo...squid-cgi_2.5.5-6ubuntu0.10_amd64.deb
Size/MD5: 90580 0b771b5715aa2b0386ffa3c096a8f93d
http://security.ubuntu.com/ubuntu/poo...uid/squid_2.5.5-6ubuntu0.10_amd64.deb
Size/MD5: 813428 57c34e10d0d60d2c2cbe2f4832b35e11
http://security.ubuntu.com/ubuntu/poo...uidclient_2.5.5-6ubuntu0.10_amd64.deb
Size/MD5: 71952 7fc28a868b31217d05c5fbaf4beeb460

i386 architecture (x86 compatible Intel/AMD)

http://security.ubuntu.com/ubuntu/poo.../squid-cgi_2.5.5-6ubuntu0.10_i386.deb
Size/MD5: 89128 91c225387b4f141a2ffb6ac5aa7bdc44
http://security.ubuntu.com/ubuntu/poo...quid/squid_2.5.5-6ubuntu0.10_i386.deb
Size/MD5: 729584 243212826e7070e0e4c91438a3eb4b25
http://security.ubuntu.com/ubuntu/poo...quidclient_2.5.5-6ubuntu0.10_i386.deb
Size/MD5: 70684 5bf0595d913dcf59ad3d1bf91d634141

powerpc architecture (Apple Macintosh G3/G4/G5)

http://security.ubuntu.com/ubuntu/poo...uid-cgi_2.5.5-6ubuntu0.10_powerpc.deb
Size/MD5: 90030 01eff0abb64ea07877973e3ba0aaa241
http://security.ubuntu.com/ubuntu/poo...d/squid_2.5.5-6ubuntu0.10_powerpc.deb
Size/MD5: 797224 98721335e9dfbf0cbf9fc785ddfc918e
http://security.ubuntu.com/ubuntu/poo...dclient_2.5.5-6ubuntu0.10_powerpc.deb
Size/MD5: 71452 307bf9ea3680f2dafb4501b39a7ff581

-- Ubuntu 5.04 (Hoary Hedgehog) --

Source archives:

http://security.ubuntu.com/ubuntu/poo.../squid/squid_2.5.8-3ubuntu1.3.diff.gz
Size/MD5: 306456 f4121964e610d1462339a4c5517dd168
http://security.ubuntu.com/ubuntu/pool/main/s/squid/squid_2.5.8-3ubuntu1.3.dsc
Size/MD5: 663 1fbc7e73c20464df34ce77369986130a
http://security.ubuntu.com/ubuntu/pool/main/s/squid/squid_2.5.8.orig.tar.gz
Size/MD5: 1383756 bbc1e77bd175462732fe5f0d822fd160

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...squid-common_2.5.8-3ubuntu1.3_all.deb
Size/MD5: 194590 51d2c86df4e26e240b3b3e97e2876234

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

http://security.ubuntu.com/ubuntu/poo.../squid-cgi_2.5.8-3ubuntu1.3_amd64.deb
Size/MD5: 93060 903ebc9e9dffb8718ec074167cc60445
http://security.ubuntu.com/ubuntu/poo...quid/squid_2.5.8-3ubuntu1.3_amd64.deb
Size/MD5: 821568 2f65cf838894a289b516d861a62d1c9e
http://security.ubuntu.com/ubuntu/poo...quidclient_2.5.8-3ubuntu1.3_amd64.deb
Size/MD5: 75580 a6e0d25ea07969cb2d7e0ab81d720a41

i386 architecture (x86 compatible Intel/AMD)

http://security.ubuntu.com/ubuntu/poo...d/squid-cgi_2.5.8-3ubuntu1.3_i386.deb
Size/MD5: 91424 f57249b108bfa604c1b22986d3eaf273
http://security.ubuntu.com/ubuntu/poo...squid/squid_2.5.8-3ubuntu1.3_i386.deb
Size/MD5: 740114 d63e0265114b95cfe607fced33dbef3f
http://security.ubuntu.com/ubuntu/poo...squidclient_2.5.8-3ubuntu1.3_i386.deb
Size/MD5: 74212 64c7f03a9087565ac5358190513de478

powerpc architecture (Apple Macintosh G3/G4/G5)

http://security.ubuntu.com/ubuntu/poo...quid-cgi_2.5.8-3ubuntu1.3_powerpc.deb
Size/MD5: 92528 81dc6239162152b2653a9b486f2d0661
http://security.ubuntu.com/ubuntu/poo...id/squid_2.5.8-3ubuntu1.3_powerpc.deb
Size/MD5: 809396 4165d247aff96a5f9ba5d8efec5cfde9
http://security.ubuntu.com/ubuntu/poo...idclient_2.5.8-3ubuntu1.3_powerpc.deb
Size/MD5: 75066 ae63d91495a62335cf050f0377f9509f

Original Advisory:
http://www.ubuntu.com/usn/usn-183-1

Other References:
SA16708:
http://secunia.com/advisories/16708/

SA16674:
http://secunia.com/advisories/16674/



Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.

266 Related Secunia Security Advisories, displaying 10

1. Ubuntu update for screen
2. Ubuntu update for Ruby
3. Ubuntu update for imagemagick
4. Ubuntu update for Qt
5. Ubuntu update for pike
6. Ubuntu update for libksba
7. Ubuntu update for libmusicbrainz
8. Ubuntu update for mozilla
9. Ubuntu update for php4 and php5
10. Ubuntu update for awstats

Show all related advisories


Send Feedback to Secunia

If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.








Secunia PSI
Scan | Patch | Track
Free Download

Secunia Poll

Do you think it's important to read Setup/User Guides for applications for use within your network?


See Results   


Most Popular Advisories

1.
phpJobScheduler "installed_conf ig_file" File Inclusion Vulnerabilities
2.
Sun Solaris Kernel Covert Channel Security Bypass
3.
HP TCP/IP Services for OpenVMS Finger Format String Vulnerability
4.
phpMyRealty "price_max" SQL Injection Vulnerability
5.
Novell eDirectory Multiple Vulnerabilities
6.
dotProject SQL Injection and Cross-Site Scripting
7.
Acoustica Mixcraft ".mx4" File Processing Buffer Overflow
8.
Slackware update for amarok
9.
Adium MSN SLP Message Integer Overflow Vulnerabilities
10.
OpenOffice "rtl_allocateMe mory()" Truncation Vulnerability





Vulnerability Management - Terms & Conditions - Copyright 2002-2008 Secunia - Compliance - Contact Secunia