PublicDate: 2005-05-02 04:00:00 UTC Candidate: CVE-2005-0173 References: https://ubuntu.com/security/notices/USN-77-1 https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2005-0173 Description: squid_ldap_auth in Squid 2.5 and earlier allows remote authenticated users to bypass username-based Access Control Lists (ACLs) via a username with a space at the beginning or end, which is ignored by the LDAP server. Ubuntu-Description: Notes: Priority: untriaged Discovered-by: Assigned-to: CVSS: Bugs: dapper_squid: released (2.5.12-4ubuntu2.2) edgy_squid: released (2.6.1-3ubuntu1.3) feisty_squid: released (2.6.5-4ubuntu2) devel_squid: released (2.6.5-4ubuntu2) upstream_squid: needs-triage