ELSA-2020-1068

ELSA-2020-1068 - squid security and bug fix update

Type:SECURITY
Impact:MODERATE
Release Date:2020-04-06

Description


[7:3.5.20-15]
- Resolves: #1690551 - Squid cache_peer DNS lookup failed when not all lower
case
- Resolves: #1680022 - squid cant display download/upload packet size for HTTPS
sites
- Resolves: #1717430 - Excessive memory usage when running out of descriptors
- Resolves: #1676420 - Cache siblings return wrongly cached gateway timeouts
- Resolves: #1729435 - CVE-2019-13345 squid: XSS via user_name or auth parameter
in cachemgr.cgi
- Resolves: #1582301 - CVE-2018-1000024 CVE-2018-1000027 squid: various flaws

[7:3.5.20-13]
- Resolves: #1620546 - migration of upstream squid


Related CVEs


CVE-2018-1000027
CVE-2019-13345
CVE-2018-1000024

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 7 (aarch64) squid-3.5.20-15.el7.src.rpmffb393e817633265e542953e3d28f47939f307b8ceda5d6752b6537a7584448dELSA-2022-22254ol7_aarch64_latest
squid-3.5.20-15.el7.src.rpmffb393e817633265e542953e3d28f47939f307b8ceda5d6752b6537a7584448dELSA-2022-22254ol7_aarch64_optional_latest
squid-3.5.20-15.el7.src.rpmffb393e817633265e542953e3d28f47939f307b8ceda5d6752b6537a7584448dELSA-2022-22254ol7_aarch64_u8_base
squid-3.5.20-15.el7.aarch64.rpm786bbf84438d8646274b938be277ee2d469e87c77fa67143ce16409501968276ELSA-2022-22254ol7_aarch64_latest
squid-3.5.20-15.el7.aarch64.rpm786bbf84438d8646274b938be277ee2d469e87c77fa67143ce16409501968276ELSA-2022-22254ol7_aarch64_u8_base
squid-migration-script-3.5.20-15.el7.aarch64.rpmeed89186331e8d0272475c60f140fa432907e869f9c8320b8b43cc33b2af8505ELSA-2024-11049ol7_aarch64_latest
squid-migration-script-3.5.20-15.el7.aarch64.rpmeed89186331e8d0272475c60f140fa432907e869f9c8320b8b43cc33b2af8505ELSA-2024-11049ol7_aarch64_u8_base
squid-sysvinit-3.5.20-15.el7.aarch64.rpmb072715e076570534e41440b37a05cb52b95c5bd732525ec732063d06910b3e2ELSA-2024-11049ol7_aarch64_optional_latest
Oracle Linux 7 (x86_64) squid-3.5.20-15.el7.src.rpmffb393e817633265e542953e3d28f47939f307b8ceda5d6752b6537a7584448dELSA-2022-22254ol7_x86_64_latest
squid-3.5.20-15.el7.src.rpmffb393e817633265e542953e3d28f47939f307b8ceda5d6752b6537a7584448dELSA-2022-22254ol7_x86_64_optional_latest
squid-3.5.20-15.el7.src.rpmffb393e817633265e542953e3d28f47939f307b8ceda5d6752b6537a7584448dELSA-2022-22254ol7_x86_64_u8_base
squid-3.5.20-15.el7.x86_64.rpm049f30a26b63b7416f4395c48df17020b485ecdca261fcd55728f8402dec5a16ELSA-2022-22254ol7_x86_64_latest
squid-3.5.20-15.el7.x86_64.rpm049f30a26b63b7416f4395c48df17020b485ecdca261fcd55728f8402dec5a16ELSA-2022-22254ol7_x86_64_u8_base
squid-migration-script-3.5.20-15.el7.x86_64.rpm33dcb4c1bdb379fd2a428771dd20f8b2f4f4d49d96ad968a0f8640f9ec7b275aELSA-2024-11049ol7_x86_64_latest
squid-migration-script-3.5.20-15.el7.x86_64.rpm33dcb4c1bdb379fd2a428771dd20f8b2f4f4d49d96ad968a0f8640f9ec7b275aELSA-2024-11049ol7_x86_64_u8_base
squid-sysvinit-3.5.20-15.el7.x86_64.rpm55c21aafa0f7dbc191f1f7629562077b8afae4010a651d543d56461e5099d75aELSA-2024-11049ol7_x86_64_optional_latest



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete