ELSA-2023-6266

ELSA-2023-6266 - squid security update

Type:SECURITY
Impact:CRITICAL
Release Date:2023-11-03

Description


[7:5.5-5.el9_2.1]
- Improve HTTP chunked encoding compliance (CVE-2023-46846)
- Fix stack buffer overflow when parsing Digest Authorization (CVE-2023-46847)
- Fix userinfo percent-encoding (CVE-2023-46848)


Related CVEs


CVE-2023-46847
CVE-2023-46848
CVE-2023-46846

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 9 (aarch64) squid-5.5-5.el9_2.1.src.rpm26cc15f82f1c114f277575874a5b047db3609a1c50936eeccb297e17e2ae590c-ol9_aarch64_appstream
squid-5.5-5.el9_2.1.aarch64.rpmb82c0f2b15023b2c1b8c63f0a0ae709db3761d357e5e0a5b6f13ca393e021051-ol9_aarch64_appstream
Oracle Linux 9 (x86_64) squid-5.5-5.el9_2.1.src.rpm26cc15f82f1c114f277575874a5b047db3609a1c50936eeccb297e17e2ae590c-ol9_x86_64_appstream
squid-5.5-5.el9_2.1.x86_64.rpmc7d1acabed1a2d54fadfa4c041bdd808b7996bdf8cde9d9f4855861bcdcb0c04-ol9_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete