HTTP: Squid Proxy FTP URI Processing Denial of Service
This signature detects attempts to exploit a known vulnerability against Squid Proxy. A successful attack can result in a denial-of-service condition.
Extended Description
Squid is prone to a remote denial-of-service vulnerability because the proxy server fails to handle certain FTP requests. Successfully exploiting this issue allows remote attackers to crash affected proxy applications, denying futher service to legitimate users. Squid versions from 2.5.STABLE11 to 2.6.STABLE6 are vulnerable to this issue.
Affected Products
Trustix operating_system_enterprise_server
References
BugTraq: 22079
CVE: CVE-2007-0247
URL: http://www.squid-cache.org/Versions/v2/2.6/squid-2.6.STABLE7-RELEASENOTES.html#s12
srx-branch-12.3
srx-19.3
srx-branch-19.3
vsrx3bsd-19.2
srx-branch-19.4
vsrx-19.4
mx-12.3
mx-19.4
vmx-19.4
mx-19.3
vsrx3bsd-19.4
srx-19.4
vsrx-12.3
vmx-19.3
vsrx-19.2
srx-12.3
Red_hat
Suse
Gentoo
Trustix
Squid
Turbolinux
Novell
Ubuntu
Mandriva
5.0