Wind River Support Network

HomeDefectsLIN7-6156
Fixed

LIN7-6156 : Security Advisory - squid - CVE-2016-4554

Created: May 17, 2016    Updated: Sep 8, 2018
Resolved Date: Jun 12, 2016
Found In Version: 7.0.0.15
Fix Version: 7.0.0.17
Severity: Standard
Applicable for: Wind River Linux 7
Component/s: Userspace

Description

mime_header.cc in Squid before 3.5.18 allows remote attackers to bypass intended same-origin restrictions and possibly conduct cache-poisoning attacks via a crated HTTP Host header, aka a header smuggling issue.

http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-4554

Other Downloads


CVEs


Live chat
Online