PT-2016-6413 · Squid+2 · Squid+2

Amos Jeffries

·

Publicado

2016-08-04

·

Atualizado

2019-12-27

·

CVE-2016-5408

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions squid versions prior to 3.1.23-16.el6 8.6
Description A stack-based buffer overflow issue exists in the munge other line function in cachemgr.cgi, allowing remote attackers to execute arbitrary code via unspecified vectors. This issue arose due to an incorrect fix for a previous problem.
Recommendations For versions prior to 3.1.23-16.el6 8.6, update to version 3.1.23-16.el6 8.6 or later to resolve the issue.

Correção

RCE

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CESA-2016_1573
CVE-2016-5408
DLA-556-1
RHSA-2016:1573
RHSA-2016_1573

Produtos afetados

Centos
Red Hat
Squid