CVE-2016-4053
—CVSS 3.0
3.7 low
EPSS
14%p96
Published
()
Modified
Description
Squid 3.x before 3.5.17 and 4.x before 4.0.9 allow remote attackers to obtain sensitive stack layout information via crafted Edge Side Includes (ESI) responses, related to incorrect use of assert and compiler optimization.
- Vendors
- squid-cacheoraclecanonical
- Products
- squid, linux, ubuntu linux
- Weakness
- CWE-119
- Vector
- CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N
In the news0 stories
No ingested article mentions this CVE yet.