Release DateNov 16, 2011 |
Severitymedium |
ImpactDenial of Service: Remote attackers can crash vulnerable systems. |
DescriptionThis indicates an attack attempt to exploit a Denial of Service vulnerability in Squid.The vulnerability results from an error when the vulnerable software handles certain DNS replies. A remote attacker may exploit this to terminate the target server, creating a denial of service condition . |
Affected ProductsSquid Project Squid prior to 3.1.16 |
Recommended ActionsApply patches or fixes from the vendor, available from the website:http://bugs.squid-cache.org/show_bug.cgi?id=3237 |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2011-4096 |
Reference/shttps://portal.telussecuritylabs.com/threat/TSL20111101-03 |