Bug 129934 (CVE-2005-3258) - VUL-0: CVE-2005-3258: squid dos via broken ftp servers
Summary: VUL-0: CVE-2005-3258: squid dos via broken ftp servers
Status: RESOLVED DUPLICATE of bug 129639
Alias: CVE-2005-3258
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents (show other bugs)
Version: unspecified
Hardware: Other Other
: P5 - None : Normal
Target Milestone: ---
Assignee: Klaus Singvogel
QA Contact: Security Team bot
URL:
Whiteboard: CVE-2005-3258: CVSS v2 Base Score: 5....
Keywords:
Depends on:
Blocks:
 
Reported: 2005-10-21 09:33 UTC by Marcus Meissner
Modified: 2021-11-22 10:24 UTC (History)
1 user (show)

See Also:
Found By: Other
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Comment 1 Marcus Meissner 2005-10-21 09:33:38 UTC
======================================================
Candidate: CVE-2005-3258
URL: http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-3258
Reference: CONFIRM:http://www.squid-cache.org/Versions/v2/2.5/bugs/#squid-2.5.STABLE11-rfc1738_do_escape

The rfc1738_do_escape function in ftp.c for Squid 2.5 STABLE11 and
earlier allows remote FTP servers to cause a denial of service
(segmentation fault) via certain crafted responses.
Comment 2 Marcus Meissner 2005-10-21 11:27:56 UTC

*** This bug has been marked as a duplicate of 129639 ***
Comment 3 Thomas Biege 2009-10-13 21:43:42 UTC
CVE-2005-3258: CVSS v2 Base Score: 5.0 (AV:N/AC:L/Au:N/C:N/I:N/A:P)