Search:     Advanced search
server monitoring

DoSable squid proxy server

Article ID: 10768
Last updated: 27 Jan, 2009
Views: 422
Posted: 22 Jan, 2009
by: Tech Pubs S.
Updated: 27 Jan, 2009
by: Tech Pubs S.

DoSable squid proxy server

This script is Copyright (C) 2001 Adam Baldwin

FamilyDenial of Service
Plugin ID10768
Bugtraq ID3354
CVE IDCVE-2001-0843

Description:

A problem exists in the way the remote Squid proxy server handles a
special mkdir-only PUT request, and causes denial of service to the proxy
server.

An attacker may use this flaw to prevent your LAN users from accessing
the web.

Solution: Apply the vendor released patch, for squid it is located here:
www.squid-cache.org. You can also protect yourself by enabling access lists
on your proxy.

*** Note that solely relied on the version number of the remote
*** proxy to issue this warning

Risk factor : Medium / High
This article was:   Helpful | Not Helpful
Prev   Next
TCP/IP Land Attack Remote DoS     Asterisk IAX2 Handshake Spoofing Vulnerabilities