[Bug 209334] www/squid(-devel)?: update to latest version (multiple vulnerabilities)

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Fri May 6 16:18:20 UTC 2016


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=209334

            Bug ID: 209334
           Summary: www/squid(-devel)?: update to latest version (multiple
                    vulnerabilities)
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Only Me
          Priority: ---
         Component: Individual Port(s)
          Assignee: freebsd-ports-bugs at FreeBSD.org
          Reporter: timp87 at gmail.com

Here is a list obtained here http://www.squid-cache.org/Advisories/:
  SQUID-2016:9, May 06, 2016
    Fixed from 4.0.10, 3.5.18 
    Multiple Denial of Service issues in ESI Response processing.
  SQUID-2016:8, May 06, 2016
    Fixed from 4.0.10, 3.5.18 
    Header smuggling issue in HTTP Request processing.
  SQUID-2016:7, May 06, 2016
    Fixed from 4.0.10, 3.5.18 
    Cache poisoning issue in HTTP Request handling.


I'll provide patches a bit later.

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list