ELSA-2021-9465

ELSA-2021-9465 - squid security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2021-09-24

Description


[7:3.5.20-17.0.1]
- Mutiple CVE fixes for squid [Orabug: 33146289]
- Resolves: CVE-2021-28651 squid: Bug 5104: Memory leak in RFC 2169 response parsing (#778)
- Resolves: CVE-2021-28652 squid: Bug 5106: Broken cache manager URL parsing (#788)
- Resolves: CVE-2021-31806,31807,31808 squid: Handle more Range requests (#790)
- Resolves: CVE-2021-33620 squid: Handle more partial responses (#791)


Related CVEs


CVE-2021-28651
CVE-2021-31806
CVE-2021-31807
CVE-2021-31808
CVE-2021-28652
CVE-2021-33620

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By Advisory
Oracle Linux 7 (aarch64) squid-3.5.20-17.0.1.el7_9.6.src.rpme9e2f4add07473d5186828b21e5097e5-
squid-3.5.20-17.0.1.el7_9.6.aarch64.rpm9157378e1fab4ff1051625fe8396c00e-
squid-migration-script-3.5.20-17.0.1.el7_9.6.aarch64.rpm091c7de1235636cdd0198d0315eedc9a-
squid-sysvinit-3.5.20-17.0.1.el7_9.6.aarch64.rpm99d67a995effc13a7c2821bd0be0aff4-
Oracle Linux 7 (x86_64) squid-3.5.20-17.0.1.el7_9.6.src.rpme9e2f4add07473d5186828b21e5097e5-
squid-3.5.20-17.0.1.el7_9.6.x86_64.rpma25ecb7389eb0f455c8770ad22d8bbdf-
squid-migration-script-3.5.20-17.0.1.el7_9.6.x86_64.rpm5ed1b22e5196b186546961972a74dfee-
squid-sysvinit-3.5.20-17.0.1.el7_9.6.x86_64.rpm7ff433cc3940a17737024ccd879ea839-



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete