Secunia Logo  
 
Ubuntu update for squid
Secunia Advisory: SA23921
Release Date: 2007-01-25
Popularity: 4,618 views

Critical:
Less critical
Impact: DoS
Where: From remote
Solution Status: Vendor Patch

OS:Ubuntu Linux 6.06
Ubuntu Linux 6.10

Subscribe: Instant alerts on relevant vulnerabilities

CVE reference:CVE-2007-0247
CVE-2007-0248


Description:
Ubuntu has issued an update for squid. This fixes some vulnerabilities, which can be exploited by malicious people to cause a DoS (Denial of Service).

For more information:
SA23767

Solution:
Apply updated packages.

-- Ubuntu 6.06 LTS --

Source archives:

http://security.ubuntu.com/ubuntu/poo...squid/squid_2.5.12-4ubuntu2.2.diff.gz
Size/MD5: 247162 c77eda0d1ab1a685ddccba3cec11112a
http://security.ubuntu.com/ubuntu/pool/main/s/squid/squid_2.5.12-4ubuntu2.2.dsc
Size/MD5: 666 728df6474a1a90b654f8e7068d49c4eb
http://security.ubuntu.com/ubuntu/pool/main/s/squid/squid_2.5.12.orig.tar.gz
Size/MD5: 1407261 1fc92afd1e858a51a2ebeba28cb76656

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...quid-common_2.5.12-4ubuntu2.2_all.deb
Size/MD5: 203104 31807d0c54820bcb4ccaac324fd8ccb2

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

http://security.ubuntu.com/ubuntu/poo...squid-cgi_2.5.12-4ubuntu2.2_amd64.deb
Size/MD5: 105858 ec1034625a294cd9a5aee3acd367e8e6
http://security.ubuntu.com/ubuntu/poo...uid/squid_2.5.12-4ubuntu2.2_amd64.deb
Size/MD5: 843664 1fba5697e70517003303a1edc4fb91f9
http://security.ubuntu.com/ubuntu/poo...uidclient_2.5.12-4ubuntu2.2_amd64.deb
Size/MD5: 79354 2967f6690585721a640fbfde495a0fee

i386 architecture (x86 compatible Intel/AMD)

http://security.ubuntu.com/ubuntu/poo.../squid-cgi_2.5.12-4ubuntu2.2_i386.deb
Size/MD5: 104692 bf432d8afaab042920e20d5f0fa48587
http://security.ubuntu.com/ubuntu/poo...quid/squid_2.5.12-4ubuntu2.2_i386.deb
Size/MD5: 756304 333887def26d690a1b40e06b1d6e9238
http://security.ubuntu.com/ubuntu/poo...quidclient_2.5.12-4ubuntu2.2_i386.deb
Size/MD5: 78198 d69eeb3c5f4bbb0c393c83292b95054b

powerpc architecture (Apple Macintosh G3/G4/G5)

http://security.ubuntu.com/ubuntu/poo...uid-cgi_2.5.12-4ubuntu2.2_powerpc.deb
Size/MD5: 105550 add8f17581b0eba4254c9a78ecf20d6d
http://security.ubuntu.com/ubuntu/poo...d/squid_2.5.12-4ubuntu2.2_powerpc.deb
Size/MD5: 838728 65488fafc44d1cbbeb54507734395c3a
http://security.ubuntu.com/ubuntu/poo...dclient_2.5.12-4ubuntu2.2_powerpc.deb
Size/MD5: 79318 cd24525894b43ae769f00286412f6a8d

sparc architecture (Sun SPARC/UltraSPARC)

http://security.ubuntu.com/ubuntu/poo...squid-cgi_2.5.12-4ubuntu2.2_sparc.deb
Size/MD5: 105074 95fa08d5f9a710a12331ffee2fe411da
http://security.ubuntu.com/ubuntu/poo...uid/squid_2.5.12-4ubuntu2.2_sparc.deb
Size/MD5: 793020 0b11d30e1704e3ad6eb939494fe46ae8
http://security.ubuntu.com/ubuntu/poo...uidclient_2.5.12-4ubuntu2.2_sparc.deb
Size/MD5: 79270 e7b4ab8c0b0939491c3ff37b0736278c

-- Ubuntu 6.10 --

Source archives:

http://security.ubuntu.com/ubuntu/poo.../squid/squid_2.6.1-3ubuntu1.2.diff.gz
Size/MD5: 250552 c7b1b1b80935e2e9e916bc5e6c1d72a1
http://security.ubuntu.com/ubuntu/pool/main/s/squid/squid_2.6.1-3ubuntu1.2.dsc
Size/MD5: 675 cf59b558d3ec2f05fb5641a8eda9627d
http://security.ubuntu.com/ubuntu/pool/main/s/squid/squid_2.6.1.orig.tar.gz
Size/MD5: 1593236 5035d9cc90e8033e4eac232ce19a665f

Architecture independent packages:

http://security.ubuntu.com/ubuntu/poo...squid-common_2.6.1-3ubuntu1.2_all.deb
Size/MD5: 415546 c59977fd127de425cbeb794dc0c9a460

amd64 architecture (Athlon64, Opteron, EM64T Xeon)

http://security.ubuntu.com/ubuntu/poo.../squid-cgi_2.6.1-3ubuntu1.2_amd64.deb
Size/MD5: 109386 b94595843390e1aa91893fa7a434c7ca
http://security.ubuntu.com/ubuntu/poo...quid/squid_2.6.1-3ubuntu1.2_amd64.deb
Size/MD5: 678296 06f5d5d9256b4e2b3cb48670578de871
http://security.ubuntu.com/ubuntu/poo...quidclient_2.6.1-3ubuntu1.2_amd64.deb
Size/MD5: 81912 24c3e805cb5b54b2e52abd1841edc2ac

i386 architecture (x86 compatible Intel/AMD)

http://security.ubuntu.com/ubuntu/poo...d/squid-cgi_2.6.1-3ubuntu1.2_i386.deb
Size/MD5: 108574 dea247ae92905bf3c719fba29828f529
http://security.ubuntu.com/ubuntu/poo...squid/squid_2.6.1-3ubuntu1.2_i386.deb
Size/MD5: 609266 bae451ceb73a4af381be40cfb7e189a8
http://security.ubuntu.com/ubuntu/poo...squidclient_2.6.1-3ubuntu1.2_i386.deb
Size/MD5: 81162 573bbe0fe45ee1f1934847ef63a8d795

powerpc architecture (Apple Macintosh G3/G4/G5)

http://security.ubuntu.com/ubuntu/poo...quid-cgi_2.6.1-3ubuntu1.2_powerpc.deb
Size/MD5: 109218 d17878220e84e6c0b12b4b32c725b37a
http://security.ubuntu.com/ubuntu/poo...id/squid_2.6.1-3ubuntu1.2_powerpc.deb
Size/MD5: 683080 b7d8bf18b2c5db3ac208cb5d545ac55a
http://security.ubuntu.com/ubuntu/poo...idclient_2.6.1-3ubuntu1.2_powerpc.deb
Size/MD5: 81844 21ebbc9fcdd89b53a8791b1387cc4c0f

sparc architecture (Sun SPARC/UltraSPARC)

http://security.ubuntu.com/ubuntu/poo.../squid-cgi_2.6.1-3ubuntu1.2_sparc.deb
Size/MD5: 108836 7f183a3aebc766b479b0a358360c9a20
http://security.ubuntu.com/ubuntu/poo...quid/squid_2.6.1-3ubuntu1.2_sparc.deb
Size/MD5: 635690 c87a766ec1c84ddddb8014fc79bd0956
http://security.ubuntu.com/ubuntu/poo...quidclient_2.6.1-3ubuntu1.2_sparc.deb
Size/MD5: 82210 9b06dd8cf1597cceb64cbe46a1f0f46f

Original Advisory:
http://www.ubuntu.com/usn/usn-414-1

Other References:
SA23767:
http://secunia.com/advisories/23767/


Track this Secunia Advisory
Customers of the Secunia Vulnerability Intelligence solutions will automatically receive updates when new information regarding this advisory is released.

Read more about our Vulnerability Intelligence solutions and what they can do for you and your company.

About this Secunia Advisory
Please note: The information that this Secunia Advisory is based on comes from a third party unless stated otherwise.

Secunia collects, validates, and verifies all vulnerability reports issued by security research groups, vendors, and others.
  
Latest Advisories

Today
New advisories: 6
New vulnerabilities: 18
Updated advisories: 9

Less // 137 views
Red Hat update for kernel
Less // 131 views
Ubuntu update for bind9
Less // 118 views
Ubuntu update for ntp
Less // 127 views
Red Hat update for bind

8th Jan, 2009
New advisories: 24
New vulnerabilities: 99
Updated advisories: 26


Solutions | More...  


Send Feedback to Secunia
If you have new information regarding this Secunia advisory or a product in our database, please send it to us using either our web form or email us at vuln@secunia.com.

Ideas, suggestions, and other feedback are most welcome.

Most Popular - 3 Hours

1. Red Hat update for kernel // 131 views
2. Ubuntu update for bind9 // 124 views
3. Red Hat update for bind // 122 views
4. Ubuntu update for ntp // 107 views
5. XOOPS "mydirname" PHP Code Injection Vulnerability // 47 views
6. SAP GUI TabOne ActiveX Control Caption List Buffer Overflow // 40 views
7. ISC BIND "EVP_VerifyFinal()" and "DSA_do_verify()" Spoofing Vulnerability // 35 views
8. Sun Java JDK / JRE Multiple Vulnerabilities // 35 views
9. OpenSSL DSA / ECDSA "EVP_VerifyFinal()" Spoofing Vulnerability // 32 views
10. NTP OpenSSL "EVP_VerifyFinal()" Spoofing Vulnerability // 30 views