HTTP: Squid Proxy FTP URI Processing Denial of Service

This signature detects attempts to exploit a known vulnerability against Squid Proxy. A successful attack can result in a denial-of-service condition.

Extended Description

Squid is prone to a remote denial-of-service vulnerability because the proxy server fails to handle certain FTP requests. Successfully exploiting this issue allows remote attackers to crash affected proxy applications, denying futher service to legitimate users. Squid versions from 2.5.STABLE11 to 2.6.STABLE6 are vulnerable to this issue.

Affected Products

Trustix operating_system_enterprise_server

Short Name
HTTP:PROXY:SQUID-FTP
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2007-0247 Denial FTP Processing Proxy Service Squid URI bid:22079 of
Release Date
02/20/2007
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3728
False Positive
Unknown
Vendors

Red_hat

Suse

Gentoo

Trustix

Squid

Turbolinux

Novell

Ubuntu

Mandriva

CVSS Score

5.0

Found a potential security threat?