Vulnerability Solutions
| The WatchMouse Periodic Vulnerability Scan checks for the vulnerability below. To see the most recently added vulnerability solutions that are scanned by WatchMouse, go to the Vulnerability Solutions overview |
| Category: Mandriva Local Security Checks | Risk factor: Medium | Added: 11 Mar 2010 |
| Synopsis: The remote host is missing the patch for the advisory MDVSA-2010:060 (squid). Description: A vulnerability has been found and corrected in squid: The htcpHandleTstRequest function in htcp.c in Squid 2.x and 3.0 through 3.0.STABLE23 allows remote attackers to cause a denial of service (crash) via crafted packets to the HTCP port, which triggers a NULL pointer dereference (CVE-2010-0639). Packages for 2008.0 are provided for Corporate Desktop 2008.0 customers. The updated packages have been patched to correct this issue. See also: http://wwwnew.mandriva.com/security/advisories?name=MDVSA-2010:060 Solution: Apply the newest security patches from Mandriva. Risk factor: Medium / CVSS Base Score : 5.0 (CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P) |
||



