ELSA-2024-9644

ELSA-2024-9644 - squid security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2024-11-15

Description


libecap
squid
[7:4.15-10.3]
- Resolves: RHEL-22593 - CVE-2024-23638 squid:4/squid: vulnerable to
a Denial of Service attack against Cache Manager error responses

[7:4.15-10.2]
- Disable ESI support
- Resolves: RHEL-65075 - CVE-2024-45802 squid:4/squid: Denial of Service
processing ESI response content

[7:4.15-10.1]
- Resolves: RHEL-56024 - (Regression) Transfer-encoding:chunked data is not sent
to the client in its complementary


Related CVEs


CVE-2024-23638
CVE-2024-45802

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 8 (aarch64) libecap-1.0.1-2.module+el8.9.0+90083+f7556140.src.rpmbec878a867b1f4f4f809e660ec3852c4e9dc9ed281d3bb8f19c0846a53763de6-ol8_aarch64_appstream
squid-4.15-10.module+el8.10.0+90442+8ef3f586.3.src.rpme9baea09b536d3149d50277459388a63407dbb2d9a93cc3e195c0b6672fe8a09-ol8_aarch64_appstream
libecap-1.0.1-2.module+el8.9.0+90083+f7556140.aarch64.rpm44b7d303b0706f02bf8f6c764ccdbfdb723bda7fe9458c8b4f45e8cc5f9e53a9-ol8_aarch64_appstream
libecap-devel-1.0.1-2.module+el8.9.0+90083+f7556140.aarch64.rpm9c28b594b51fa9966956f5def632f33067dafb86207c324f2c7dfc8b0dcf466e-ol8_aarch64_appstream
squid-4.15-10.module+el8.10.0+90442+8ef3f586.3.aarch64.rpmcf140285810a4c7cd654706ea8fb221ed814894d6e8937b3b323cf270d77f7c3-ol8_aarch64_appstream
Oracle Linux 8 (x86_64) libecap-1.0.1-2.module+el8.9.0+90083+f7556140.src.rpmbec878a867b1f4f4f809e660ec3852c4e9dc9ed281d3bb8f19c0846a53763de6-ol8_x86_64_appstream
squid-4.15-10.module+el8.10.0+90442+8ef3f586.3.src.rpme9baea09b536d3149d50277459388a63407dbb2d9a93cc3e195c0b6672fe8a09-ol8_x86_64_appstream
libecap-1.0.1-2.module+el8.9.0+90083+f7556140.x86_64.rpma19a8fe60034442365ebe4867be57efaf3dd84f45d1c064789c6a86b792bc997-ol8_x86_64_appstream
libecap-devel-1.0.1-2.module+el8.9.0+90083+f7556140.x86_64.rpmd826fa957ede16c5b3db470182a176678ec52971afdaf4fdd4c0e47eb78951c9-ol8_x86_64_appstream
squid-4.15-10.module+el8.10.0+90442+8ef3f586.3.x86_64.rpm21e845f86e3d0695a1a432156140c4462b8901d4dca9dfe970873ae3a3ac9257-ol8_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete