RHEL 2.1 / 3 : squid (RHSA-2004:591)

This script is Copyright (C) 2004-2015 Tenable Network Security, Inc.

Synopsis :

The remote Red Hat host is missing a security update.

Description :

An updated squid package that fixes a remote denial of service
vulnerability is now available.

Squid is a full-featured Web proxy cache.

iDEFENSE reported a flaw in the squid SNMP module. This flaw could
allow an attacker who has the ability to send arbitrary packets to the
SNMP port to restart the server, causing it to drop all open
connections. The Common Vulnerabilities and Exposures project
(cve.mitre.org) has assigned the name CVE-2004-0918 to this issue.

All users of squid should update to this erratum package, which
contains a backport of the security fix for this vulnerability.

See also :


Solution :

Update the affected squid package.

Risk factor :

Medium / CVSS Base Score : 5.0
CVSS Temporal Score : 4.3
Public Exploit Available : true

Family: Red Hat Local Security Checks

Nessus Plugin ID: 15533 ()

Bugtraq ID: 11385

CVE ID: CVE-2004-0918

Ready to Scan Unlimited IPs & Run Compliance Checks?

Upgrade to Nessus Professional today!

Buy Now

Combine the Power of Nessus with the Ease of Cloud

Start your free Nessus Cloud trial now!

Begin Free Trial