MGASA-2017-0253

Source
https://advisories.mageia.org/MGASA-2017-0253.html
Import Source
https://advisories.mageia.org/MGASA-2017-0253.json
JSON Data
https://api.osv.dev/v1/vulns/MGASA-2017-0253
Related
Published
2017-08-09T20:01:32Z
Modified
2017-08-09T19:57:59Z
Summary
Updated varnish packages fix security vulnerability
Details

A denial of service vulnerability was discovered in Varnish, a state of the art, high-performance web accelerator. Specially crafted HTTP requests can cause the Varnish daemon to assert and restart, clearing the cache in the process (CVE-2017-12425).

References
Credits

Affected packages

Mageia:6 / varnish

Package

Name
varnish
Purl
pkg:rpm/mageia/varnish?distro=mageia-6

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected
Fixed
5.0.0-3.1.mga6

Ecosystem specific

{
    "section": "core"
}