ELBA-2024-3114

ELBA-2024-3114 - squid:4 bug fix and enhancement update

Type:BUG
Severity:NA
Release Date:2024-05-24

Description


libecap
squid
[7:4.15-10]
- Resolves: RHEL-28529 - squid:4/squid: Denial of Service in HTTP Chunked
Decoding (CVE-2024-25111)
- Resolves: RHEL-26088 - squid:4/squid: denial of service in HTTP header
parser (CVE-2024-25617)

[7:4.15-9]
- Resolves: RHEL-19552 - squid:4/squid: denial of service in HTTP request
parsing (CVE-2023-50269)

[7:4.15-8]
- Resolves: RHEL-18351 - squid:4/squid: Buffer over-read in the HTTP Message
processing feature (CVE-2023-49285)
- Resolves: RHEL-18342 - squid:4/squid: Incorrect Check of Function Return
Value In Helper Process management (CVE-2023-49286)
- Resolves: RHEL-18230 - squid:4/squid: Denial of Service in SSL Certificate
validation (CVE-2023-46724)
- Resolves: RHEL-15911 - squid:4/squid: NULL pointer dereference in the gopher
protocol code (CVE-2023-46728)
- Resolves: RHEL-18251 - squid crashes in assertion when a parent peer exists
- Resolves: RHEL-14794 - squid: squid multiple issues in HTTP response caching
(CVE-2023-5824)
- Resolves: RHEL-14803 - squid: squid: Denial of Service in HTTP Digest
Authentication (CVE-2023-46847)
- Resolves: RHEL-14777 - squid: squid: Request/Response smuggling in HTTP/1.1
and ICAP (CVE-2023-46846)




Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) libecap-1.0.1-2.module+el8.9.0+90083+f7556140.src.rpm10503f6e9c7ed585a0ff9c7705880042-ol8_aarch64_appstream
squid-4.15-10.module+el8.10.0+90323+4f2b2edd.src.rpm3d07f5c429fabc1ea08835221a155730-ol8_aarch64_appstream
libecap-1.0.1-2.module+el8.9.0+90083+f7556140.aarch64.rpmebd1f1d1df32b8f329449eb5ec6a6f22-ol8_aarch64_appstream
libecap-devel-1.0.1-2.module+el8.9.0+90083+f7556140.aarch64.rpm7c1328d8a42c2ebc6c3b69944b6b45cd-ol8_aarch64_appstream
squid-4.15-10.module+el8.10.0+90323+4f2b2edd.aarch64.rpm8b2749f8c0cedf1b34b5dbf5c2274ea6-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) libecap-1.0.1-2.module+el8.9.0+90083+f7556140.src.rpm10503f6e9c7ed585a0ff9c7705880042-ol8_x86_64_appstream
squid-4.15-10.module+el8.10.0+90323+4f2b2edd.src.rpm3d07f5c429fabc1ea08835221a155730-ol8_x86_64_appstream
libecap-1.0.1-2.module+el8.9.0+90083+f7556140.x86_64.rpmdfbf6f71bba9bd3bbf002dffc0e0ccf6-ol8_x86_64_appstream
libecap-devel-1.0.1-2.module+el8.9.0+90083+f7556140.x86_64.rpm8abd01d10825f0701f5b3101520591c9-ol8_x86_64_appstream
squid-4.15-10.module+el8.10.0+90323+4f2b2edd.x86_64.rpmd802aa46500b67bda9c6e45cafe520cb-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete