5
CVSSv2

CVE-2011-4096

Published: 17/11/2011 Updated: 28/11/2016
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The idnsGrokReply function in Squid prior to 3.1.16 does not properly free memory, which allows remote malicious users to cause a denial of service (daemon abort) via a DNS reply containing a CNAME record that references another CNAME record that contains an empty A record.

Vulnerable Product Search on Vulmon Subscribe to Product

squid-cache squid 3.1.0.5

squid-cache squid 3.1.0.9

squid-cache squid 3.1.0.8

squid-cache squid 3.1.0.11

squid-cache squid 3.1.0.16

squid-cache squid 3.1.0.2

squid-cache squid 3.1.0.3

squid-cache squid 3.1.13

squid-cache squid 3.1.14

squid-cache squid 3.0

squid-cache squid 3.0.stable24

squid-cache squid 3.0.stable18

squid-cache squid 3.0.stable16

squid-cache squid 3.0.stable15

squid-cache squid 3.0.stable9

squid-cache squid 3.0.stable5

squid-cache squid 3.0.stable1

squid-cache squid 3.1.5.1

squid-cache squid 3.1.5

squid-cache squid 3.1.0.7

squid-cache squid 3.1.0.6

squid-cache squid 3.1.0.12

squid-cache squid 3.1.0.17

squid-cache squid 3.1.0.18

squid-cache squid 3.1.0.4

squid-cache squid 3.1.8

squid-cache squid

squid-cache squid 3.0.stable23

squid-cache squid 3.0.stable10

squid-cache squid 3.0.stable22

squid-cache squid 3.0.stable19

squid-cache squid 3.0.stable8

squid-cache squid 3.0.stable4

squid-cache squid 3.0.stable3

squid-cache squid 3.1.7

squid-cache squid 3.1.6

squid-cache squid 3.1.0.15

squid-cache squid 3.1.0.10

squid-cache squid 3.1

squid-cache squid 3.1.0.1

squid-cache squid 3.1.11

squid-cache squid 3.1.12

squid-cache squid 3.0.stable21

squid-cache squid 3.0.stable17

squid-cache squid 3.0.stable14

squid-cache squid 3.0.stable13

squid-cache squid 3.0.stable11

squid-cache squid 3.0.stable6

squid-cache squid 3.1.4

squid-cache squid 3.1.3

squid-cache squid 3.1.0.13

squid-cache squid 3.1.0.14

squid-cache squid 3.1.1

squid-cache squid 3.1.2

squid-cache squid 3.1.9

squid-cache squid 3.1.10

squid-cache squid 3.0.stable25

squid-cache squid 3.0.stable20

squid-cache squid 3.0.stable12

squid-cache squid 3.0.stable7

squid-cache squid 3.0.stable2

Vendor Advisories

Synopsis Moderate: squid security update Type/Severity Security Advisory: Moderate Topic An updated squid package that fixes one security issue is now available forRed Hat Enterprise Linux 6The Red Hat Security Response Team has rated this update as having moderatesecurity impact A Common Vulnerability Sc ...