Squid < 2.5.STABLE8 Malformed Host Name Error Message Information Disclosure

This script is Copyright (C) 2004-2017 Tenable Network Security, Inc.


Synopsis :

The remote proxy server is affected by an information disclosure
vulnerability.

Description :

According to its banner, the version of Squid running on the remote
host is prior to 2.5.STABLE8. It is, therefore, affected by an
information disclosure vulnerability due to improper handling of
malformed host names. An unauthenticated, remote attacker can exploit
this issue to disclose the contents of recently freed memory as error
messages.

Note that Nessus has not tested for this issue but has instead relied
only on the application's self-reported version number.

See also :

http://bugs.squid-cache.org/show_bug.cgi?id=1143

Solution :

Upgrade to Squid version 2.5.STABLE8 or later. Alternatively, apply
the vendor-supplied patch.

Risk factor :

Medium / CVSS Base Score : 5.0
(CVSS2#AV:N/AC:L/Au:N/C:P/I:N/A:N)
CVSS Temporal Score : 4.3
(CVSS2#E:H/RL:OF/RC:ND)
Public Exploit Available : true

Family: Firewalls

Nessus Plugin ID: 15929 ()

Bugtraq ID: 11865

CVE ID: CVE-2004-2479

Ready to Amp Up Your Nessus Experience?

Get Nessus Professional to scan unlimited IPs, run compliance checks & more

Buy Nessus Professional Now