ELSA-2024-1375

ELSA-2024-1375 - squid:4 security update

Type:SECURITY
Severity:IMPORTANT
Release Date:2024-03-21

Description


libecap
squid
[7:4.15-7.10]
- Resolves: RHEL-19551 - squid:4/squid: denial of service in HTTP request
parsing (CVE-2023-50269)

[7:4.15-7.9]
- Resolves: RHEL-28611 - squid:4/squid: Denial of Service in HTTP Chunked
Decoding (CVE-2024-25111)

[7:4.15-7.6]
- Resolves: RHEL-26087 - squid:4/squid: denial of service in HTTP header
parser (CVE-2024-25617)


Related CVEs


CVE-2024-25111
CVE-2023-50269
CVE-2024-25617

Updated Packages


Release/ArchitectureFilenameMD5sumSuperseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) libecap-1.0.1-2.module+el8.9.0+90083+f7556140.src.rpm10503f6e9c7ed585a0ff9c7705880042-ol8_aarch64_appstream
squid-4.15-7.module+el8.9.0+90184+ff65e696.10.src.rpm40cf5514deb7b797cd3cb7f90a13538f-ol8_aarch64_appstream
libecap-1.0.1-2.module+el8.9.0+90083+f7556140.aarch64.rpmebd1f1d1df32b8f329449eb5ec6a6f22-ol8_aarch64_appstream
libecap-devel-1.0.1-2.module+el8.9.0+90083+f7556140.aarch64.rpm7c1328d8a42c2ebc6c3b69944b6b45cd-ol8_aarch64_appstream
squid-4.15-7.module+el8.9.0+90184+ff65e696.10.aarch64.rpmf2f018e40fdc0bca1bac51249547de8b-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) libecap-1.0.1-2.module+el8.9.0+90083+f7556140.src.rpm10503f6e9c7ed585a0ff9c7705880042-ol8_x86_64_appstream
squid-4.15-7.module+el8.9.0+90184+ff65e696.10.src.rpm40cf5514deb7b797cd3cb7f90a13538f-ol8_x86_64_appstream
libecap-1.0.1-2.module+el8.9.0+90083+f7556140.x86_64.rpmdfbf6f71bba9bd3bbf002dffc0e0ccf6-ol8_x86_64_appstream
libecap-devel-1.0.1-2.module+el8.9.0+90083+f7556140.x86_64.rpm8abd01d10825f0701f5b3101520591c9-ol8_x86_64_appstream
squid-4.15-7.module+el8.9.0+90184+ff65e696.10.x86_64.rpma85625847d1302a956f45541fee08783-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete