suse · CVE-2016-4556

Quick triage

Priority: medium Published: 2021-05-30 13:42:13 UTC Updated: 2026-04-18 16:09:45 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2016-4556 severity moderate: SUSE including 14 source package names (squid, squid-3.3.14-20.2, …), 42 product×package rows across 38 product lines (HPE Helion OpenStack 8, SUSE Liberty Linux 7, … (38 product lines)): Known Not Affected 22, Fixed 20.

Description:

Double free vulnerability in Esi.cc in Squid 3.x before 3.5.18 and 4.x before 4.0.10 allows remote servers to cause a denial of service (crash) via a crafted Edge Side Includes (ESI) response.

cvelogic Threat Intelligence