Author: carnil
Date: 2016-05-06 15:35:56 +0000 (Fri, 06 May 2016)
New Revision: 41480

Modified:
   data/CVE/list
Log:
Add CVE-2016-4553/squid

Modified: data/CVE/list
===================================================================
--- data/CVE/list       2016-05-06 15:29:16 UTC (rev 41479)
+++ data/CVE/list       2016-05-06 15:35:56 UTC (rev 41480)
@@ -11,6 +11,11 @@
        NOTE: Introduced by: 
https://git.kernel.org/linus/0246e64d9a5fcd4805198de59b9b5cf1f974eb41 
(v3.18-rc1)
        NOTE: Exploitable since: 
https://git.kernel.org/linus/1be7f75d1668d6296b80bf35dcf6762393530afc (v4.4-rc1)
        NOTE: CVE Request: 
http://www.openwall.com/lists/oss-security/2016/05/06/4
+CVE-2016-4553 [Cache Poisoning issue in HTTP Request handling]
+       - squid3 <unfixed>
+       - squid <not-affected> (Does not affect 2.x)
+       NOTE: http://www.squid-cache.org/Advisories/SQUID-2016_7.txt
+       NOTE: 
http://www.squid-cache.org/Versions/v3/3.5/changesets/squid-3.5-14039.patch
 CVE-2016-4535 (Integer signedness error in the AV engine before DAT 8145, as 
used in ...)
        NOT-FOR-US: McAfee / AV engine
 CVE-2016-4534 (The McAfee VirusScan Console (mcconsol.exe) in McAfee VirusScan 
...)


_______________________________________________
Secure-testing-commits mailing list
Secure-testing-commits@lists.alioth.debian.org
http://lists.alioth.debian.org/cgi-bin/mailman/listinfo/secure-testing-commits

Reply via email to