<?xml version="1.0" encoding="UTF-8"?>
<!--PATCHINFO id="70ac0a790fa150209a81f8b3b175d02f"!-->
<update status="stable" from="maint-coord@suse.de" type="security" version="2144">
  <id>dbg111-squid</id>
  <title>squid: fixed several DoS conditions (CVE-2009-2855,CVE-2010-0308,CVE-2009-2622,CVE-2009-2621)</title>
  <release>openSUSE 11.1</release>
  <issued date="1268754675"/>
  <references>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=577347" id="577347" title="bug number 577347" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=576087" id="576087" title="bug number 576087" type="bugzilla"/>
    <reference href="https://bugzilla.novell.com/show_bug.cgi?id=525774" id="525774" title="bug number 525774" type="bugzilla"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2855" id="CVE-2009-2855" title="CVE-2009-2855" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-0308" id="CVE-2010-0308" title="CVE-2010-0308" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2621" id="CVE-2009-2621" title="CVE-2009-2621" type="cve"/>
    <reference href="http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-2622" id="CVE-2009-2622" title="CVE-2009-2622" type="cve"/>
  </references>
  <description>The following vulnerabilities have been fixed in squid:
- CVE-2009-2855: DoS via special crafted auth header
- CVE-2010-0308: DoS via invalid DoS header
- CVE-2009-2622: DoS in squid3 via broken HTTP handling
- CVE-2009-2621: DoS in squid3 via not enforced &quot;buffer
  limits and related bound checks&quot;
</description>
  <pkglist>
    <collection>
        <package name="squid-beta-debuginfo" arch="i586" version="3.0" release="438.35.1">
          <filename>squid-beta-debuginfo-3.0-438.35.1.i586.rpm</filename>
        </package>
        <package name="squid-beta-debuginfo" arch="ppc" version="3.0" release="438.35.1">
          <filename>squid-beta-debuginfo-3.0-438.35.1.ppc.rpm</filename>
        </package>
        <package name="squid-beta-debuginfo" arch="x86_64" version="3.0" release="438.35.1">
          <filename>squid-beta-debuginfo-3.0-438.35.1.x86_64.rpm</filename>
        </package>
        <package name="squid-beta-debugsource" arch="i586" version="3.0" release="438.35.1">
          <filename>squid-beta-debugsource-3.0-438.35.1.i586.rpm</filename>
        </package>
        <package name="squid-beta-debugsource" arch="ppc" version="3.0" release="438.35.1">
          <filename>squid-beta-debugsource-3.0-438.35.1.ppc.rpm</filename>
        </package>
        <package name="squid-beta-debugsource" arch="x86_64" version="3.0" release="438.35.1">
          <filename>squid-beta-debugsource-3.0-438.35.1.x86_64.rpm</filename>
        </package>
        <package name="squid-debuginfo" arch="i586" version="2.7.STABLE5" release="1.21.2">
          <filename>squid-debuginfo-2.7.STABLE5-1.21.2.i586.rpm</filename>
        </package>
        <package name="squid-debuginfo" arch="ppc" version="2.7.STABLE5" release="1.21.2">
          <filename>squid-debuginfo-2.7.STABLE5-1.21.2.ppc.rpm</filename>
        </package>
        <package name="squid-debuginfo" arch="x86_64" version="2.7.STABLE5" release="1.21.2">
          <filename>squid-debuginfo-2.7.STABLE5-1.21.2.x86_64.rpm</filename>
        </package>
        <package name="squid-debugsource" arch="i586" version="2.7.STABLE5" release="1.21.2">
          <filename>squid-debugsource-2.7.STABLE5-1.21.2.i586.rpm</filename>
        </package>
        <package name="squid-debugsource" arch="ppc" version="2.7.STABLE5" release="1.21.2">
          <filename>squid-debugsource-2.7.STABLE5-1.21.2.ppc.rpm</filename>
        </package>
        <package name="squid-debugsource" arch="x86_64" version="2.7.STABLE5" release="1.21.2">
          <filename>squid-debugsource-2.7.STABLE5-1.21.2.x86_64.rpm</filename>
        </package>
        <package name="squid3-debuginfo" arch="i586" version="3.0.STABLE10" release="2.13.1">
          <filename>squid3-debuginfo-3.0.STABLE10-2.13.1.i586.rpm</filename>
        </package>
        <package name="squid3-debuginfo" arch="ppc" version="3.0.STABLE10" release="2.13.1">
          <filename>squid3-debuginfo-3.0.STABLE10-2.13.1.ppc.rpm</filename>
        </package>
        <package name="squid3-debuginfo" arch="x86_64" version="3.0.STABLE10" release="2.13.1">
          <filename>squid3-debuginfo-3.0.STABLE10-2.13.1.x86_64.rpm</filename>
        </package>
        <package name="squid3-debugsource" arch="i586" version="3.0.STABLE10" release="2.13.1">
          <filename>squid3-debugsource-3.0.STABLE10-2.13.1.i586.rpm</filename>
        </package>
        <package name="squid3-debugsource" arch="ppc" version="3.0.STABLE10" release="2.13.1">
          <filename>squid3-debugsource-3.0.STABLE10-2.13.1.ppc.rpm</filename>
        </package>
        <package name="squid3-debugsource" arch="x86_64" version="3.0.STABLE10" release="2.13.1">
          <filename>squid3-debugsource-3.0.STABLE10-2.13.1.x86_64.rpm</filename>
        </package>
    </collection>
  </pkglist>
</update>
