ELSA-2015-2378

ELSA-2015-2378 - squid security and bug fix update

Type:SECURITY
Impact:MODERATE
Release Date:2015-11-23

Description


[7:3.3.8-26]
- Related: #1186768 - removing patch, because of missing tests and
incorrent patch

[7:3.3.8-25]
- Related: #1102842 - squid rpm package misses /var/run/squid needed for
smp mode. Squid needs write access to /var/run/squid.

[7:3.3.8-24]
- Related: #1102842 - squid rpm package misses /var/run/squid needed for
smp mode. Creation of /var/run/squid was also needed to be in SPEC file.

[7:3.3.8-23]
- Related: #1102842 - squid rpm package misses /var/run/squid needed for
smp mode. Creation of this directory was moved to tmpfiles.d conf file.

[7:3.3.8-22]
- Related: #1102842 - squid rpm package misses /var/run/squid needed for
smp mode. Creation of this directory was moved to service file.

[7:3.3.8-21]
- Resolves: #1263338 - squid with digest auth on big endian systems
start looping

[7:3.3.8-20]
- Resolves: #1186768 - security issue: Nonce replay vulnerability
in Digest authentication

[7:3.3.8-19]
- Resolves: #1225640 - squid crashes by segfault when it reboots

[7:3.3.8-18]
- Resolves: #1102842 - squid rpm package misses /var/run/squid needed for
smp mode

[7:3.3.8-17]
- Resolves: #1233265 - CVE-2015-3455 squid: incorrect X509 server
certificate validation

[7:3.3.8-16]
- Resolves: #1080042 - Supply a firewalld service file with squid

[7:3.3.8-15]
- Resolves: #1161600 - Squid does not serve cached responses
with Vary headers

[7:3.3.8-14]
- Resolves: #1198778 - Filedescriptor leaks on snmp

[7:3.3.8-13]
- Resolves: #1204375 - squid sends incorrect ssl chain breaking newer gnutls
using applications


Related CVEs


CVE-2015-3455

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (x86_64) squid-3.3.8-26.el7.src.rpm8a9e0e32cc6b3607196ed0809ed32c5321c77cc42813b2919c47c9741dfab837ELSA-2022-22254ol7_x86_64_latest_archive
squid-3.3.8-26.el7.src.rpm8a9e0e32cc6b3607196ed0809ed32c5321c77cc42813b2919c47c9741dfab837ELSA-2022-22254ol7_x86_64_optional_archive
squid-3.3.8-26.el7.src.rpm8a9e0e32cc6b3607196ed0809ed32c5321c77cc42813b2919c47c9741dfab837ELSA-2022-22254ol7_x86_64_u2_base
squid-3.3.8-26.el7.x86_64.rpm781902a8311962f818845512c66cef5a30c6c145ce9d915ff5a51d55fdf04c81ELSA-2022-22254ol7_x86_64_latest_archive
squid-3.3.8-26.el7.x86_64.rpm781902a8311962f818845512c66cef5a30c6c145ce9d915ff5a51d55fdf04c81ELSA-2022-22254ol7_x86_64_u2_base
squid-sysvinit-3.3.8-26.el7.x86_64.rpmbb14c42d49ca2f36edf747ee5a8b44938b79a7bb4d7dc04d3ca235994ef1ec4cELSA-2024-11049ol7_x86_64_optional_archive



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete