Mandriva Linux Security Advisory – A vulnerability in squid was discovered that could be remotely exploited by using a special ftp:// URL. Another Denial of Service vulnerability was discovered in squid 2.6 that allows remote attackers to crash the server by causing an external_acl_queue overload. Additionally, a bug in squid 2.6 for max_user_ip handling in ntlm_auth has been corrected.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/53894/MDKSA-2007-026.txt
Source: https://packetstormsecurity.com/files/53894/Mandriva-Linux-Security-Advisory-2007.026.html

