ELSA-2025-21002

ELSA-2025-21002 - squid security update

Type:SECURITY
Impact:IMPORTANT
Release Date:2025-12-02

Description


[7:6.10-6.1]
- Resolves: RHEL-122480 - CVE-2025-62168 squid: Squid vulnerable to information
disclosure via authentication credential leakage in error handling

[7:6.10-6]
- Resolves: RHEL-86817 - "TCP connection to XX.XX.XX.XX/XXXX failed" message is
output frequently on RHEL10


Related CVEs


CVE-2025-62168

Updated Packages


Release/ArchitectureFilenamesha256Superseded By AdvisoryChannel Label
Oracle Linux 10 (aarch64) squid-6.10-6.el10_1.1.src.rpmf93b986a5487c21c22660498681e85bd167c1eeeac9a8edef06113be73a125d1-ol10_aarch64_appstream
squid-6.10-6.el10_1.1.aarch64.rpm6a61e88bcd65abc39a81f1f1a954aafe9dc9a3e66ff4f2fdf81c098ae743788f-ol10_aarch64_appstream
Oracle Linux 10 (x86_64) squid-6.10-6.el10_1.1.src.rpmf93b986a5487c21c22660498681e85bd167c1eeeac9a8edef06113be73a125d1-ol10_x86_64_appstream
squid-6.10-6.el10_1.1.x86_64.rpmaf89537626042c34b04a0f7464aa017fa07aafefad7c106b4a86f138ec279d68-ol10_x86_64_appstream



This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team

software.hardware.complete