CVE-2011-4096: Medium severity squid web proxy cache vulnerability
Published Nov 17, 2011
·Updated
The idnsGrokReply function in Squid before 3.1.16 does not properly free memory, which allows remote attackers to cause a denial of service (daemon abort) via a DNS reply containing a CNAME record that references another CNAME record that contains an empty A record.
Affected Software
87 affected components
Squid-Cache Squid=3.1.0.18
Squid-Cache Squid=3.0.stable13
Squid-Cache Squid=3.0-rc4
Squid-Cache Squid=3.0.stable9
Squid-Cache Squid=3.1.13
Squid-Cache Squid=3.0
Squid-Cache Squid=3.0.stable20
Squid-Cache Squid=3.0.stable14
Squid-Cache Squid=3.0.stable3
Squid-Cache Squid=3.0
Squid-Cache Squid=3.0
Squid-Cache Squid=3.0
Squid-Cache Squid=3.1.0.7
Squid-Cache Squid=3.1.0.14
Squid-Cache Squid=3.0.stable4
Squid-Cache Squid=3.0
Squid-Cache Squid=3.1.0.12
Squid-Cache Squid=3.0
Squid-Cache Squid=3.1.1
Squid-Cache Squid=3.0.stable24
Squid-Cache Squid=3.1.0.3
Squid-Cache Squid=3.1.0.1
Squid-Cache Squid=3.0.stable16
Squid-Cache Squid=3.0.stable16-rc1
Squid-Cache Squid=3.0
Squid-Cache Squid=3.0
Squid-Cache Squid=3.1.14
Squid-Cache Squid=3.1.8
Squid-Cache Squid=3.0
Squid-Cache Squid=3.0.stable11-rc1
Squid-Cache Squid=3.0.stable18
Squid-Cache Squid=3.0.stable1
Squid-Cache Squid=3.0-rc1
Squid-Cache Squid=3.1.6
Squid-Cache Squid=3.1.0.9
Squid-Cache Squid=3.1.0.15
Squid-Cache Squid=3.0
Squid-Cache Squid=3.0.stable6
Squid-Cache Squid=3.0
Squid-Cache Squid=3.1.0.13
Squid-Cache Squid=3.1.12
Squid-Cache Squid=3.0.stable15
Squid-Cache Squid=3.1.10
Squid-Cache Squid=3.1.3
Squid-Cache Squid=3.1.0.2
Squid-Cache Squid=3.0.stable5
Squid-Cache Squid=3.1.5
Squid-Cache Squid=3.1.7
Squid-Cache Squid=3.0
Squid-Cache Squid=3.0.stable21
Squid-Cache Squid=3.1.0.6
Squid-Cache Squid=3.0
Squid-Cache Squid=3.1.0.4
Squid-Cache Squid=3.0
Squid-Cache Squid=3.0.stable17
Squid-Cache Squid=3.0
Squid-Cache Squid=3.1
Squid-Cache Squid=3.1.0.16
Squid-Cache Squid=3.0.stable11
Squid-Cache Squid=3.0
Squid-Cache Squid=3.0
Squid-Cache Squid=3.1.4
Squid-Cache Squid=3.1.11
Squid-Cache Squid=3.0
Squid-Cache Squid=3.1.0.8
Squid-Cache Squid=3.0
Squid-Cache Squid=3.0.stable10
Squid-Cache Squid=3.0.stable8
Squid-Cache Squid=3.1.2
Squid-Cache Squid=3.1.0.5
Squid-Cache Squid=3.1.5.1
Squid-Cache Squid=3.1.0.10
Squid-Cache Squid=3.0.stable12
Squid-Cache Squid=3.0.stable25
Squid-Cache Squid=3.0
Squid-Cache Squid=3.0
Squid-Cache Squid=3.0
Squid-Cache Squid=3.0.stable23
Squid-Cache Squid=3.1.9
Squid-Cache Squid=3.0.stable22
Squid-Cache Squid=3.1.0.11
Squid-Cache Squid=3.0.stable2
Squid-Cache Squid=3.0.stable7
Squid-Cache Squid=3.0
Squid-Cache Squid=3.1.0.17
Squid-Cache Squid=3.0.stable19
Squid-Cache Squid<=3.1.15
Event History
Nov 17, 2011
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2011-4096?
CVE-2011-4096 is classified as a denial of service vulnerability.
2
How do I fix CVE-2011-4096?
To fix CVE-2011-4096, upgrade your Squid installation to version 3.1.16 or later.
3
Which versions of Squid are affected by CVE-2011-4096?
CVE-2011-4096 affects Squid versions prior to 3.1.16, including specific versions of 3.0 and 3.1.
4
What type of attack does CVE-2011-4096 allow?
CVE-2011-4096 allows remote attackers to cause a denial of service by sending a malicious DNS reply.
5
Is there a workaround for CVE-2011-4096?
There are no specific workarounds for CVE-2011-4096, and updating to the latest version is recommended.