Your submission was sent successfully! Close

You have successfully unsubscribed! Close

Thank you for signing up for our newsletter!
In these regular emails you will find the latest updates about Ubuntu and upcoming events where you can meet our team.Close

CVE-2014-6270

Publication date 12 September 2014

Last updated 24 July 2024


Ubuntu priority

Off-by-one error in the snmpHandleUdp function in snmp_core.cc in Squid 2.x and 3.x, when an SNMP port is configured, allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted UDP SNMP request, which triggers a heap-based buffer overflow.

Status

Package Ubuntu Release Status
squid3 15.10 wily
Fixed 3.3.8-1ubuntu16.2
15.04 vivid Ignored
14.10 utopic Ignored
14.04 LTS trusty
Fixed 3.3.8-1ubuntu6.6
12.04 LTS precise
Fixed 3.1.19-1ubuntu3.12.04.6
10.04 LTS lucid Ignored