7.5

CVE-2016-4556

Double free vulnerability in Esi.cc in Squid 3.x before 3.5.18 and 4.x before 4.0.10 allows remote servers to cause a denial of service (crash) via a crafted Edge Side Includes (ESI) response.

Data is provided by the National Vulnerability Database (NVD)
Squid-cacheSquid Version3.0
Squid-cacheSquid Version3.1
Squid-cacheSquid Version3.1.0.1
Squid-cacheSquid Version3.1.0.2
Squid-cacheSquid Version3.1.0.3
Squid-cacheSquid Version3.1.0.4
Squid-cacheSquid Version3.1.0.5
Squid-cacheSquid Version3.1.0.6
Squid-cacheSquid Version3.1.0.7
Squid-cacheSquid Version3.1.0.8
Squid-cacheSquid Version3.1.0.9
Squid-cacheSquid Version3.1.0.10
Squid-cacheSquid Version3.1.0.11
Squid-cacheSquid Version3.1.0.12
Squid-cacheSquid Version3.1.0.13
Squid-cacheSquid Version3.1.0.14
Squid-cacheSquid Version3.1.0.15
Squid-cacheSquid Version3.1.0.16
Squid-cacheSquid Version3.1.0.17
Squid-cacheSquid Version3.1.0.18
Squid-cacheSquid Version3.1.1
Squid-cacheSquid Version3.1.2
Squid-cacheSquid Version3.1.3
Squid-cacheSquid Version3.1.4
Squid-cacheSquid Version3.1.5
Squid-cacheSquid Version3.1.5.1
Squid-cacheSquid Version3.1.6
Squid-cacheSquid Version3.1.7
Squid-cacheSquid Version3.1.8
Squid-cacheSquid Version3.1.9
Squid-cacheSquid Version3.1.10
Squid-cacheSquid Version3.1.11
Squid-cacheSquid Version3.1.12
Squid-cacheSquid Version3.1.12.1
Squid-cacheSquid Version3.1.12.2
Squid-cacheSquid Version3.1.12.3
Squid-cacheSquid Version3.1.13
Squid-cacheSquid Version3.1.14
Squid-cacheSquid Version3.1.15
Squid-cacheSquid Version3.1.16
Squid-cacheSquid Version3.1.17
Squid-cacheSquid Version3.1.18
Squid-cacheSquid Version3.1.19
Squid-cacheSquid Version3.1.20
Squid-cacheSquid Version3.1.21
Squid-cacheSquid Version3.1.22
Squid-cacheSquid Version3.2.0.1
Squid-cacheSquid Version3.2.0.2
Squid-cacheSquid Version3.2.0.3
Squid-cacheSquid Version3.2.0.4
Squid-cacheSquid Version3.2.0.5
Squid-cacheSquid Version3.2.0.6
Squid-cacheSquid Version3.2.0.7
Squid-cacheSquid Version3.2.0.8
Squid-cacheSquid Version3.2.0.9
Squid-cacheSquid Version3.2.0.10
Squid-cacheSquid Version3.2.0.11
Squid-cacheSquid Version3.2.0.12
Squid-cacheSquid Version3.2.0.13
Squid-cacheSquid Version3.2.0.14
Squid-cacheSquid Version3.2.0.15
Squid-cacheSquid Version3.2.0.16
Squid-cacheSquid Version3.2.0.17
Squid-cacheSquid Version3.2.0.18
Squid-cacheSquid Version3.2.0.19
Squid-cacheSquid Version3.2.1
Squid-cacheSquid Version3.2.2
Squid-cacheSquid Version3.2.3
Squid-cacheSquid Version3.2.4
Squid-cacheSquid Version3.2.5
Squid-cacheSquid Version3.2.6
Squid-cacheSquid Version3.2.7
Squid-cacheSquid Version3.2.8
Squid-cacheSquid Version3.2.9
Squid-cacheSquid Version3.2.10
Squid-cacheSquid Version3.2.11
Squid-cacheSquid Version3.2.12
Squid-cacheSquid Version3.2.13
Squid-cacheSquid Version3.3.0
Squid-cacheSquid Version3.3.0.1
Squid-cacheSquid Version3.3.0.2
Squid-cacheSquid Version3.3.0.3
Squid-cacheSquid Version3.3.1
Squid-cacheSquid Version3.3.2
Squid-cacheSquid Version3.3.3
Squid-cacheSquid Version3.3.4
Squid-cacheSquid Version3.3.5
Squid-cacheSquid Version3.3.6
Squid-cacheSquid Version3.3.7
Squid-cacheSquid Version3.3.8
Squid-cacheSquid Version3.3.9
Squid-cacheSquid Version3.3.10
Squid-cacheSquid Version3.3.11
Squid-cacheSquid Version3.3.12
Squid-cacheSquid Version3.3.13
Squid-cacheSquid Version3.3.14
Squid-cacheSquid Version3.4.0.1
Squid-cacheSquid Version3.4.0.2
Squid-cacheSquid Version3.4.0.3
Squid-cacheSquid Version3.4.1
Squid-cacheSquid Version3.4.2
Squid-cacheSquid Version3.4.3
Squid-cacheSquid Version3.4.4
Squid-cacheSquid Version3.4.4.1
Squid-cacheSquid Version3.4.4.2
Squid-cacheSquid Version3.4.8
Squid-cacheSquid Version3.4.9
Squid-cacheSquid Version3.4.10
Squid-cacheSquid Version3.4.11
Squid-cacheSquid Version3.4.12
Squid-cacheSquid Version3.4.13
Squid-cacheSquid Version3.4.14
Squid-cacheSquid Version3.5.0.1
Squid-cacheSquid Version3.5.0.2
Squid-cacheSquid Version3.5.0.3
Squid-cacheSquid Version3.5.0.4
Squid-cacheSquid Version3.5.1
Squid-cacheSquid Version3.5.2
Squid-cacheSquid Version3.5.3
Squid-cacheSquid Version3.5.4
Squid-cacheSquid Version3.5.5
Squid-cacheSquid Version3.5.6
Squid-cacheSquid Version3.5.7
Squid-cacheSquid Version3.5.8
Squid-cacheSquid Version3.5.9
Squid-cacheSquid Version3.5.10
Squid-cacheSquid Version3.5.11
Squid-cacheSquid Version3.5.12
Squid-cacheSquid Version3.5.13
Squid-cacheSquid Version3.5.14
Squid-cacheSquid Version3.5.15
Squid-cacheSquid Version3.5.16
Squid-cacheSquid Version3.5.17
Squid-cacheSquid Version4.0.1
Squid-cacheSquid Version4.0.2
Squid-cacheSquid Version4.0.3
Squid-cacheSquid Version4.0.4
Squid-cacheSquid Version4.0.5
Squid-cacheSquid Version4.0.6
Squid-cacheSquid Version4.0.7
Squid-cacheSquid Version4.0.8
Squid-cacheSquid Version4.0.9
OracleLinux Version6
OracleLinux Version7
CanonicalUbuntu Linux Version12.04 SwEditionlts
CanonicalUbuntu Linux Version14.04 SwEditionlts
CanonicalUbuntu Linux Version15.10
CanonicalUbuntu Linux Version16.04 SwEditionlts
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 56.86% 0.981
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:N/A:P