Date: Sat, 21 Feb 2015 23:17:14 -0700 From: Kurt Seifried <kseifried@...hat.com> To: "oss-security@...ts.openwall.com" <oss-security@...ts.openwall.com>, Assign a CVE Identifier <cve-assign@...re.org>, jvn@....jp Subject: CVE-2015-0881 I'm trying to track down information on CVE-2015-0881. I can't find a squid security contact (security@...id-cache.org bounced), there's no security report, and no link to a source code patch for this. This is regarding 3.1.9 and earlier, 3.1.10 was released on 22 Dec 2010, so 4+ years ago. Needless to say I am more than a bit confused. A link to a specific code patch/vuln/file would be helpful. Also if anyone knows how to contact Squid re security issues properly I'd love to know. -- Kurt Seifried -- Red Hat -- Product Security -- Cloud PGP A90B F995 7350 148F 66BF 7554 160D 4553 5E26 7993 Download attachment "signature.asc" of type "application/pgp-signature" (820 bytes)
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Powered by Openwall GNU/*/Linux - Powered by OpenVZ