* SECURITY UPDATE: Fix for denial of service vulnerability where remote
attackers send crafted request headers. (LP: #1154502)
- debian/patches/001-CVE-2012-3505.patch: Limit the number of headers to
prevent DoS attacks. Randomize hashmaps in order to avoid fake headers
getting included in the same bucket, allowing for DoS attacks.
- CVE-2012-3505
-- Christian Kuersteiner <email address hidden> Wed, 13 Mar 2013 16:42:14 +0700
This was fixed in precise in:
tinyproxy (1.8.3-1ubuntu0.1) precise-security; urgency=low
* SECURITY UPDATE: Fix for denial of service vulnerability where remote patches/ 001-CVE- 2012-3505. patch: Limit the number of headers to
attackers send crafted request headers. (LP: #1154502)
- debian/
prevent DoS attacks. Randomize hashmaps in order to avoid fake headers
getting included in the same bucket, allowing for DoS attacks.
- CVE-2012-3505
-- Christian Kuersteiner <email address hidden> Wed, 13 Mar 2013 16:42:14 +0700
Closing the precise task.