Boletines de Vulnerabilidades

DSA-4507 squid - security update


Información sobre el sistema

   
Software afectado Debian

Descripción

Several vulnerabilities were discovered in Squid, a fully featured webproxy cache. The flaws in the HTTP Digest Authentication processing, theHTTP Basic Authentication processing and in the cachemgr.cgi allowedremote attackers to perform denial of service and cross-site scriptingattacks, and potentially the execution of arbitrary code.

More info:

https://www.debian.org/security/2019/dsa-4507

Identificadores estándar

Propiedad Valor
CVE CVE-2019-12525 ,CVE-2019-12527 ,CVE-2019-12529 ,CVE-2019-12854 ,CVE-2019-13345 and DSA-4507.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2019-08-26

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT