Candidate: CVE-2008-7249 PublicDate: 2009-12-30 22:30:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-7249 Description: Buffer overflow in Squid Analysis Report Generator (Sarg) 2.2.3.1, and probably later, allows user-assisted remote attackers to execute arbitrary code via a long HTTP request method in a crafted access.log file, a different vulnerability than CVE-2008-1167. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_sarg: upstream_sarg: released (2.2.4) dapper_sarg: ignored (reached end-of-life) hardy_sarg: not-affected (2.2.5-1ubuntu0.8.04.1) intrepid_sarg: not-affected jaunty_sarg: not-affected karmic_sarg: not-affected devel_sarg: not-affected