Beveiligingsadvies

CVE-2011-4096

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2011-11-17 19:00:00
Laatst bijgewerkt 2024-08-06 23:53:32
Toegewezen door redhat
CVSS-score geen score
Status PUBLISHED

Beschrijving

The idnsGrokReply function in Squid before 3.1.16 does not properly free memory, which allows remote attackers to cause a denial of service (daemon abort) via a DNS reply containing a CNAME record that references another CNAME record that contains an empty A record.