PT-2016-6413 · Squid+2 · Squid+2

Amos Jeffries

·

Published

2016-08-04

·

Updated

2019-12-27

·

CVE-2016-5408

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions squid versions prior to 3.1.23-16.el6 8.6
Description A stack-based buffer overflow issue exists in the munge other line function in cachemgr.cgi, allowing remote attackers to execute arbitrary code via unspecified vectors. This issue arose due to an incorrect fix for a previous problem.
Recommendations For versions prior to 3.1.23-16.el6 8.6, update to version 3.1.23-16.el6 8.6 or later to resolve the issue.

Fix

RCE

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CESA-2016_1573
CVE-2016-5408
DLA-556-1
RHSA-2016:1573
RHSA-2016_1573

Affected Products

Centos
Red Hat
Squid