{"id":"MGASA-2016-0148","summary":"Updated squid packages fix CVE-2016-4051","details":"Updated squid packages fix security vulnerability:\n\nDue to incorrect buffer management Squid cachemgr.cgi tool is vulnerable to a\nbuffer overflow when processing remotely supplied inputs relayed to it from\nSquid. This problem allows any client to seed the Squid manager reports with\ndata that will cause a buffer overflow when processed by the cachemgr.cgi tool\n(CVE-2016-4051).\n","modified":"2026-04-16T01:46:09.296956920Z","published":"2016-04-25T07:57:21Z","upstream":["CVE-2016-4051"],"references":[{"type":"ADVISORY","url":"https://advisories.mageia.org/MGASA-2016-0148.html"},{"type":"REPORT","url":"https://bugs.mageia.org/show_bug.cgi?id=18231"},{"type":"WEB","url":"http://www.squid-cache.org/Advisories/SQUID-2016_5.txt"}],"affected":[{"package":{"name":"squid","ecosystem":"Mageia:5","purl":"pkg:rpm/mageia/squid?arch=source&distro=mageia-5"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"3.5.17-1.mga5"}]}],"ecosystem_specific":{"section":"core"},"database_specific":{"source":"https://advisories.mageia.org/MGASA-2016-0148.json"}}],"schema_version":"1.7.5","credits":[{"name":"Mageia","contact":["https://wiki.mageia.org/en/Packages_Security_Team"],"type":"COORDINATOR"}]}