ISOMAN

CVE

CVE-2014-7142

The pinger in Squid 3.x before 3.4.8 allows remote attackers to obtain sensitive information or cause a denial of service (crash) via a crafted (1) ICMP or (2) ICMP6 packet size.

Severity
MEDIUM
CVSS
6.4
Published
Modified

Linked Releases

References

  1. http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00010.html
  2. http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00040.html
  3. http://seclists.org/oss-sec/2014/q3/539
  4. http://seclists.org/oss-sec/2014/q3/613
  5. http://seclists.org/oss-sec/2014/q3/626
  6. http://secunia.com/advisories/60242
  7. http://ubuntu.com/usn/usn-2422-1
  8. http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.html
  9. http://www.securityfocus.com/bid/70022
  10. http://www.squid-cache.org/Advisories/SQUID-2014_4.txt
  11. https://bugzilla.novell.com/show_bug.cgi?id=891268
  12. http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00010.html
  13. http://lists.opensuse.org/opensuse-security-announce/2016-08/msg00040.html
  14. http://seclists.org/oss-sec/2014/q3/539
  15. http://seclists.org/oss-sec/2014/q3/613
  16. http://seclists.org/oss-sec/2014/q3/626
  17. http://secunia.com/advisories/60242
  18. http://ubuntu.com/usn/usn-2422-1
  19. http://www.oracle.com/technetwork/topics/security/bulletinjul2015-2511963.html
  20. http://www.securityfocus.com/bid/70022