Debian Security Advisory DSA 3139-1 (squid - security update)

Summary
Matthew Daley discovered that squid, a web proxy cache, does not properly perform input validation when parsing requests. A remote attacker could use this flaw to mount a denial of service attack, by sending specially crafted Range requests.
Solution
For the stable distribution (wheezy), this problem has been fixed in version 2.7.STABLE9-4.1+deb7u1. We recommend that you upgrade your squid packages.
Insight
This package provides the Squid Internet Object Cache developed by the National Laboratory for Applied Networking Research (NLANR) and Internet volunteers.
Affected
squid on Debian Linux
Detection
This check tests the installed software version using the apt package manager.
References