Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2011-4096

Опубликовано: 17 нояб. 2011
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 5

Описание

The idnsGrokReply function in Squid before 3.1.16 does not properly free memory, which allows remote attackers to cause a denial of service (daemon abort) via a DNS reply containing a CNAME record that references another CNAME record that contains an empty A record.

РелизСтатусПримечание
devel

not-affected

3.1.16-1ubuntu1
hardy

not-affected

code not present
lucid

not-affected

code not present
maverick

released

3.1.6-1.1ubuntu1.2
natty

released

3.1.11-1ubuntu0.1
oneiric

released

3.1.14-1ubuntu0.1
upstream

released

3.1.16-1

Показывать по

Ссылки на источники

EPSS

Процентиль: 98%
0.64043
Средний

5 Medium

CVSS2

Связанные уязвимости

redhat
около 14 лет назад

The idnsGrokReply function in Squid before 3.1.16 does not properly free memory, which allows remote attackers to cause a denial of service (daemon abort) via a DNS reply containing a CNAME record that references another CNAME record that contains an empty A record.

nvd
почти 14 лет назад

The idnsGrokReply function in Squid before 3.1.16 does not properly free memory, which allows remote attackers to cause a denial of service (daemon abort) via a DNS reply containing a CNAME record that references another CNAME record that contains an empty A record.

debian
почти 14 лет назад

The idnsGrokReply function in Squid before 3.1.16 does not properly fr ...

github
больше 3 лет назад

The idnsGrokReply function in Squid before 3.1.16 does not properly free memory, which allows remote attackers to cause a denial of service (daemon abort) via a DNS reply containing a CNAME record that references another CNAME record that contains an empty A record.

oracle-oval
больше 13 лет назад

ELSA-2011-1791: squid security update (MODERATE)

EPSS

Процентиль: 98%
0.64043
Средний

5 Medium

CVSS2