Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-3948

Опубликовано: 07 апр. 2016
Источник: debian
EPSS Средний

Описание

Squid 3.x before 3.5.16 and 4.x before 4.0.8 improperly perform bounds checking, which allows remote attackers to cause a denial of service via a crafted HTTP response, related to Vary headers.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
squid3fixed3.5.16-1package
squid3no-dsawheezypackage
squidfixed4.1-1package
squidno-dsawheezypackage

Примечания

  • http://www.squid-cache.org/Versions/v3/3.5/changesets/squid-3.5-14016.patch

  • http://www.squid-cache.org/Advisories/SQUID-2016_4.txt

EPSS

Процентиль: 97%
0.38224
Средний

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 9 лет назад

Squid 3.x before 3.5.16 and 4.x before 4.0.8 improperly perform bounds checking, which allows remote attackers to cause a denial of service via a crafted HTTP response, related to Vary headers.

redhat
больше 9 лет назад

Squid 3.x before 3.5.16 and 4.x before 4.0.8 improperly perform bounds checking, which allows remote attackers to cause a denial of service via a crafted HTTP response, related to Vary headers.

CVSS3: 7.5
nvd
больше 9 лет назад

Squid 3.x before 3.5.16 and 4.x before 4.0.8 improperly perform bounds checking, which allows remote attackers to cause a denial of service via a crafted HTTP response, related to Vary headers.

CVSS3: 7.5
github
больше 3 лет назад

Squid 3.x before 3.5.16 and 4.x before 4.0.8 improperly perform bounds checking, which allows remote attackers to cause a denial of service via a crafted HTTP response, related to Vary headers.

oracle-oval
почти 9 лет назад

ELSA-2016-2600: squid security, bug fix, and enhancement update (MODERATE)

EPSS

Процентиль: 97%
0.38224
Средний