[Secure-testing-commits] r41481 - data/CVE

Salvatore Bonaccorso carnil at moszumanska.debian.org
Fri May 6 15:38:29 UTC 2016


Author: carnil
Date: 2016-05-06 15:38:29 +0000 (Fri, 06 May 2016)
New Revision: 41481

Modified:
   data/CVE/list
Log:
Add CVE-2016-4554/squid

Modified: data/CVE/list
===================================================================
--- data/CVE/list	2016-05-06 15:35:56 UTC (rev 41480)
+++ data/CVE/list	2016-05-06 15:38:29 UTC (rev 41481)
@@ -11,6 +11,15 @@
 	NOTE: Introduced by: https://git.kernel.org/linus/0246e64d9a5fcd4805198de59b9b5cf1f974eb41 (v3.18-rc1)
 	NOTE: Exploitable since: https://git.kernel.org/linus/1be7f75d1668d6296b80bf35dcf6762393530afc (v4.4-rc1)
 	NOTE: CVE Request: http://www.openwall.com/lists/oss-security/2016/05/06/4
+CVE-2016-4554 [Header Smuggling issue in HTTP Request processing]
+	- squid3 <unfixed>
+	- squid <removed>
+	NOTE: http://www.squid-cache.org/Advisories/SQUID-2016_8.txt
+	NOTE: http://www.squid-cache.org/Versions/v3/3.1/changesets/squid-3.1-10496.patch
+	NOTE: http://www.squid-cache.org/Versions/v3/3.2/changesets/squid-3.2-11842.patch
+	NOTE: http://www.squid-cache.org/Versions/v3/3.3/changesets/squid-3.3-12698.patch
+	NOTE: http://www.squid-cache.org/Versions/v3/3.4/changesets/squid-3.4-13236.patch
+	NOTE: http://www.squid-cache.org/Versions/v3/3.5/changesets/squid-3.5-14038.patch
 CVE-2016-4553 [Cache Poisoning issue in HTTP Request handling]
 	- squid3 <unfixed>
 	- squid <not-affected> (Does not affect 2.x)




More information about the Secure-testing-commits mailing list