← back
CVE-2011-4096

CVE-2011-4096

15Vexday Risk Score

No sign of exploitation. No public exploitation artifact known so far.

ssvc Trackepss 37%
exploitation probability
37%top 2% of all CVEs
observed exploitation
nono source reports it
The idnsGrokReply function in Squid before 3.1.16 does not properly free memory, which allows remote attackers to cause a denial of service (daemon abort) via a DNS reply containing a CNAME record that references another CNAME record that contains an empty A record.
Affected products
n/a · n/a