ZeroHour

CVE-2016-4053

CVSS 3.0
3.7 low
EPSS
14%p96
Published
()
Modified
Description

Squid 3.x before 3.5.17 and 4.x before 4.0.9 allow remote attackers to obtain sensitive stack layout information via crafted Edge Side Includes (ESI) responses, related to incorrect use of assert and compiler optimization.

Vendors
squid-cacheoraclecanonical
Products
squid, linux, ubuntu linux
Weakness
CWE-119
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news

No ingested article mentions this CVE yet.