Debian Security Advisory

DLA-556-1 squid3 -- LTS security update

Date Reported:
23 Jul 2016
Affected Packages:
squid3
Vulnerable:
Yes
Security database references:
In Mitre's CVE dictionary: CVE-2016-4051.
More information:

A buffer overflow in the Squid 3's cache manager, identified by the CVE-2016-4051, was addressed by the DLA-478-1 and the Debian package version 3.1.20-2.2+deb7u6. However, the fix was incomplete and thus a new upload has been needed.

For Debian 7 Wheezy, this problem has been fixed in version 3.1.20-2.2+deb7u6.

We recommend that you upgrade your squid3 packages.

Further information about Debian LTS security advisories, how to apply these updates to your system and frequently asked questions can be found at: https://wiki.debian.org/LTS