DSA-1646 squid - array bounds check
Saturday, November 1st, 2008A weakness has been discovered in squid, a caching proxy server. The
flaw was introduced upstream in response to
CVE-2007-6239, and
announced by Debian in DSA-1482-1. The flaw involves an
over-aggressive bounds check on an array resize, and could be
exploited by an authorized client to induce a denial of service
condition against squid.
Read the full story: DSA-1646 squid - array bounds check: http://www.debian.org/security/2008/dsa-1646