Bug#776194: CVE-2014-3609: Denial of service in request processing

2015-01-25 Thread Luigi Gangitano
Hi Sebastien, I’ll take care of unstable on Monday. In the near future squid 2.x should be removed from unstable too. Thanks for your help. Regards, L > Il giorno 25/gen/2015, alle ore 12:12, Sebastien Delafond > ha scritto: > > Source: squid > Version: 2.7.STABLE9-4.1 > Severity: importan

Bug#776194: CVE-2014-3609: Denial of service in request processing

2015-01-25 Thread Sebastien Delafond
Source: squid Version: 2.7.STABLE9-4.1 Severity: important Tags: security upstream patch Squid 2.x is vulnerable to a DoS attack when parsing Range requests, see the upstream announcement[0]. Luigi, I will upload 2.7.STABLE9-4.1+deb7u1 to wheezy-security today, would you like me to fix unstable