Secunia Logo
 
SUSE update for squid
Secunia Advisory: SA23805
Release Date: 2007-01-23
Popularity: 5,144 views

Critical:
Less critical
Impact: DoS
Where: From remote
Solution Status: Vendor Patch

OS:SUSE Linux 10
SUSE Linux 10.1
SUSE Linux 9.3
SUSE Linux Enterprise Server 10
SuSE Linux Enterprise Server 8
SUSE Linux Enterprise Server 9
SuSE Linux Openexchange Server 4.x
SuSE Linux Standard Server 8

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2007-0247
CVE-2007-0248


Description:
SUSE has issued an update for squid. This fixes two vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service).

For more information:
SA23767

Solution:
Apply updated packages.

x86 Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/i586/squid-2.6.STABLE6-0.4.i586.rpm
c1a38e8dc8301158fe717a9115e60001

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10...i586/squid-2.5.STABLE12-18.6.i586.rpm
b390a43cd014988f3444fc8a3f89af7d

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda.../i586/squid-2.5.STABLE10-5.5.i586.rpm
171ae4d1ae9941da3641391f0cbb020e

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/upda...m/i586/squid-2.5.STABLE9-4.9.i586.rpm
5abca23e37cee2bf20085951b8a59953

Power PC Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/ppc/squid-2.6.STABLE6-0.4.ppc.rpm
ffb0c8fe4086a913fede3cba0f1b473c

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/ppc/squid-2.5.STABLE12-18.6.ppc.rpm
bec76f3f1c4a445801117f696d438925

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...pm/ppc/squid-2.5.STABLE10-5.5.ppc.rpm
87fc216ed79eee0d5eecf2ba24d4adfe

x86-64 Platform:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10...6_64/squid-2.6.STABLE6-0.4.x86_64.rpm
6b37f676418485c52d262cc8f17347f0

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10...64/squid-2.5.STABLE12-18.6.x86_64.rpm
ddc9aaba2e99eeb2d8215acf799b8ecb

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda..._64/squid-2.5.STABLE10-5.5.x86_64.rpm
100ed655a1fbdcf4a8ed1bd98598e2bb

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/upda...6_64/squid-2.5.STABLE9-4.9.x86_64.rpm
599d0bb6f1cd872816eb371abf24a44e

Sources:

openSUSE 10.2:
ftp://ftp.suse.com/pub/suse/update/10.2/rpm/src/squid-2.6.STABLE6-0.4.src.rpm
8467df81f96919f3a1c6d55905581735

SUSE LINUX 10.1:
ftp://ftp.suse.com/pub/suse/update/10.1/rpm/src/squid-2.5.STABLE12-18.6.src.rpm
5da1a897fdb953cb3f9801d0eda1899b

SUSE LINUX 10.0:
ftp://ftp.suse.com/pub/suse/i386/upda...pm/src/squid-2.5.STABLE10-5.5.src.rpm
794090e751edceb8355c4706a28c2aa5

SUSE LINUX 9.3:
ftp://ftp.suse.com/pub/suse/i386/upda...rpm/src/squid-2.5.STABLE9-4.9.src.rpm
6c6c1a9a0e0db47a3336d51551a859e9

UnitedLinux 1.0
http://support.novell.com/techcenter/psdb/e4f5424c0eb495e52b8739b57f62405b.html

SuSE Linux Openexchange Server 4
http://support.novell.com/techcenter/psdb/e4f5424c0eb495e52b8739b57f62405b.html

Open Enterprise Server
http://support.novell.com/techcenter/psdb/e4f5424c0eb495e52b8739b57f62405b.html

Novell Linux POS 9
http://support.novell.com/techcenter/psdb/e4f5424c0eb495e52b8739b57f62405b.html

SuSE Linux Enterprise Server 8
http://support.novell.com/techcenter/psdb/e4f5424c0eb495e52b8739b57f62405b.html

SuSE Linux Standard Server 8
http://support.novell.com/techcenter/psdb/e4f5424c0eb495e52b8739b57f62405b.html

SuSE Linux School Server
http://support.novell.com/techcenter/psdb/e4f5424c0eb495e52b8739b57f62405b.html

SUSE LINUX Retail Solution 8
http://support.novell.com/techcenter/psdb/e4f5424c0eb495e52b8739b57f62405b.html

SUSE SLES 10
http://support.novell.com/techcenter/psdb/e4f5424c0eb495e52b8739b57f62405b.html

SUSE SLED 10
http://support.novell.com/techcenter/psdb/e4f5424c0eb495e52b8739b57f62405b.html

SUSE SLES 9
http://support.novell.com/techcenter/psdb/e4f5424c0eb495e52b8739b57f62405b.html

Original Advisory:
http://lists.suse.com/archive/suse-security-announce/2007-Jan/0013.html

Other References:
SA23767:
http://secunia.com/advisories/23767/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Apple iPhone / iPod touch Multiple Vulnerabilities // 34 views
2. Sun Java JDK / JRE Multiple Vulnerabilities // 24 views
3. Adobe Flash Player Multiple Security Issues and Vulnerabilities // 23 views
4. vBulletin Visitor Messages Script Insertion Vulnerability // 23 views
5. Microsoft Word Smart Tag Invalid Length Processing Vulnerability // 22 views
6. IBM Workplace Web Content Management Cross-Site Scripting Vulnerabilities // 21 views
7. xt:Commerce SQL Injection Vulnerability // 20 views
8. Checkpoint VPN-1 Information Disclosure Vulnerability // 20 views
9. SemanticScuttle Cross-Site Scripting Vulnerabilities // 20 views
10. Easyedit CMS Multiple SQL Injection Vulnerabilities // 20 views