Vulnerability Solutions

The Nimsoft Cloud Monitor Periodic Vulnerability Scan checks for the vulnerability below. To see the most recently added vulnerability solutions that are scanned by WatchMouse, go to the Vulnerability Solutions overview

Category: SuSE Local Security Checks Risk factor: Medium Added: 31 Jan 2012
Synopsis:

The remote SuSE system is missing a security patch for squid3

Description:

This update fixes the following security issue:

* 727492: Invalid free by processing CNAME (CVE-2011-4096)

It also fixes the following non-security issue:

* 737905: installation creates empty spurious file '/1'

Security Issue reference:

* CVE-2011-4096
<http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2011-4096>

See also:

https://bugzilla.novell.com/show_bug.cgi?id=727492
https://bugzilla.novell.com/show_bug.cgi?id=737905

Solution:

Install the squid3 security patch by using 'yast', for example.

Risk factor:

Medium / CVSS Base Score : 5.0
(CVSS2#AV:N/AC:L/Au:N/C:N/I:N/A:P)