Summary
The remote host is missing an update to the system as announced in the referenced advisory.
Solution
Update your system with the appropriate patches or software upgrades.
http://www.squid-cache.org/Advisories/SQUID-2010_3.txt http://www.vuxml.org/freebsd/e4dac715-c818-11df-a92c-0015587e2cc1.html
Insight
The following package is affected: squid
CVE-2010-3072
The string-comparison functions in String.cci in Squid 3.x before 3.1.8 and 3.2.x before 3.2.0.2 allow remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted request.
Severity
Classification
-
CVE CVE-2010-3072 -
CVSS Base Score: 5.0
AV:N/AC:L/Au:N/C:N/I:N/A:P
Related Vulnerabilities