ELSA-2023-5924

ELSA-2023-5924 - varnish security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2023-10-24

Description


[6.6.2-3.el9_2.1]
- Add parameters h2_rst_allowance and h2_rst_allowance_period to mitigate CVE-2023-44487
- Resolves: RHEL-12818


Related CVEs


CVE-2023-44487

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) varnish-6.6.2-3.el9_2.1.src.rpm96762c94a09407d2bfbf6d408a8dae73-ol9_aarch64_appstream
varnish-6.6.2-3.el9_2.1.src.rpm96762c94a09407d2bfbf6d408a8dae73-ol9_aarch64_codeready_builder
varnish-6.6.2-3.el9_2.1.aarch64.rpm6a1c285412d913ec3512bf3c3ac35fe7-ol9_aarch64_appstream
varnish-devel-6.6.2-3.el9_2.1.aarch64.rpmf91cbb9a9d617eef608d4e77a00c96a5-ol9_aarch64_codeready_builder
varnish-docs-6.6.2-3.el9_2.1.aarch64.rpme22460d8684e6a51df7500fc6dc0ac7c-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) varnish-6.6.2-3.el9_2.1.src.rpm96762c94a09407d2bfbf6d408a8dae73-ol9_x86_64_appstream
varnish-6.6.2-3.el9_2.1.src.rpm96762c94a09407d2bfbf6d408a8dae73-ol9_x86_64_codeready_builder
varnish-6.6.2-3.el9_2.1.i686.rpmfde4229e0e1caf7c94fd63cfeba9ac31-ol9_x86_64_appstream
varnish-6.6.2-3.el9_2.1.x86_64.rpm03a064b4959c11a129249f38ca1a3471-ol9_x86_64_appstream
varnish-devel-6.6.2-3.el9_2.1.i686.rpm66d124e28da1056c3f7d30d91f0ad3ae-ol9_x86_64_codeready_builder
varnish-devel-6.6.2-3.el9_2.1.x86_64.rpm7589ef27d40d5e94f2eb403f13dbe2de-ol9_x86_64_codeready_builder
varnish-docs-6.6.2-3.el9_2.1.x86_64.rpmf64e8a84181be82f2aeb3e3dd657ebe4-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete