Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-4052

Опубликовано: 25 апр. 2016
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8
CVSS3: 8.1

Описание

Multiple stack-based buffer overflows in Squid 3.x before 3.5.17 and 4.x before 4.0.9 allow remote HTTP servers to cause a denial of service or execute arbitrary code via crafted Edge Side Includes (ESI) responses.

РелизСтатусПримечание
devel

released

3.5.12-1ubuntu8
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [3.3.8-1ubuntu6.8]]
esm-infra/xenial

not-affected

3.5.12-1ubuntu7.2
precise

released

3.1.19-1ubuntu3.12.04.7
trusty

released

3.3.8-1ubuntu6.8
trusty/esm

DNE

trusty was released [3.3.8-1ubuntu6.8]
upstream

released

3.5.17-1
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

wily

released

3.3.8-1ubuntu16.3

Показывать по

EPSS

Процентиль: 89%
0.05009
Низкий

6.8 Medium

CVSS2

8.1 High

CVSS3

Связанные уязвимости

redhat
больше 9 лет назад

Multiple stack-based buffer overflows in Squid 3.x before 3.5.17 and 4.x before 4.0.9 allow remote HTTP servers to cause a denial of service or execute arbitrary code via crafted Edge Side Includes (ESI) responses.

CVSS3: 8.1
nvd
больше 9 лет назад

Multiple stack-based buffer overflows in Squid 3.x before 3.5.17 and 4.x before 4.0.9 allow remote HTTP servers to cause a denial of service or execute arbitrary code via crafted Edge Side Includes (ESI) responses.

CVSS3: 8.1
debian
больше 9 лет назад

Multiple stack-based buffer overflows in Squid 3.x before 3.5.17 and 4 ...

CVSS3: 8.1
github
больше 3 лет назад

Multiple stack-based buffer overflows in Squid 3.x before 3.5.17 and 4.x before 4.0.9 allow remote HTTP servers to cause a denial of service or execute arbitrary code via crafted Edge Side Includes (ESI) responses.

oracle-oval
больше 9 лет назад

ELSA-2016-1138: squid security update (MODERATE)

EPSS

Процентиль: 89%
0.05009
Низкий

6.8 Medium

CVSS2

8.1 High

CVSS3