CVE-2016-2572
27.02.2016, 05:59
http.cc in Squid 4.x before 4.0.7 relies on the HTTP status code after a response-parsing failure, which allows remote HTTP servers to cause a denial of service (assertion failure and daemon exit) via a malformed response.Enginsight
| Vendor | Product | Version |
|---|---|---|
| squid-cache | squid | 4.0.1 |
| squid-cache | squid | 4.0.2 |
| squid-cache | squid | 4.0.3 |
| squid-cache | squid | 4.0.4 |
| squid-cache | squid | 4.0.5 |
| squid-cache | squid | 4.0.6 |
𝑥
= Vulnerable software versions
Debian Releases
Common Weakness Enumeration
References