DescriptionBuffer overflow in the ntlm_check_auth (NTLM authentication) function for Squid Web Proxy Cache 2.5.x and 3.x, when compiled with NTLM handlers enabled, allows remote attackers to execute arbitrary code via a long password ("pass" variable).
NVD CVSS v2 Base Score: 10.0 (AV:N/AC:L/Au:N/C:C/I:C/A:C)
Novell/SUSE informationNo Novell Bugzilla entries cross referenced. SUSE Security Advisories:
- SuSE-SA:2004:016, published Wednesday, Jun 9th 2004 16:30 MEST