Release date:
2025-11-27 22:13:15 UTC
Description:
- CVE-2025-62168: fix failure to redact HTTP authentication credentials in error
handling to prevent information disclosure
- email_err_data directive now defaults to 'off' for security (previously 'on')
Updated packages:
-
squid-3.5.20-17.0.5.el7_9.99.tuxcare.els2.x86_64.rpm
sha:e38681fe3a93560d86bcdba1b65f1e4c9807d7231e6b5d4ac3b60a17b2e7ce6c
-
squid-migration-script-3.5.20-17.0.5.el7_9.99.tuxcare.els2.x86_64.rpm
sha:a1b1a29129d9c98e45391e03d2b26abec4f8863583bef70139f649b732ff70cf
-
squid-sysvinit-3.5.20-17.0.5.el7_9.99.tuxcare.els2.x86_64.rpm
sha:61ca92c073fa0bc86c11f670e70ae109edf4c4565aba66e71c095dc68fc13d00
Notes:
This page is generated automatically and has not been checked for errors. For clarification or
corrections please contact the
CloudLinux Packaging Team.