[CLSA-2022:1665502073] Fix CVE(s): CVE-2022-41318
Type:
security
Severity:
Important
Release date:
2022-10-11 15:27:53 UTC
Description:
* SECURITY UPDATE: buffer-over-read in SSPI and SMB authentication - debian/patches/CVE-2022-41318.patch: improve debugs and checks sequence to clarify cases and ensure that all are handled correctly in lib/ntlmauth/ntlmauth.cc - CVE-2022-41318
Updated packages:
  • squid_3.5.12-1ubuntu7.17+tuxcare.els2_amd64.deb
    sha:315784fe26259feef7ce21e907f03fb686c59da2
  • squid-cgi_3.5.12-1ubuntu7.17+tuxcare.els2_amd64.deb
    sha:a49d94cc09f8980fb5efe17c4d99d04cb3a1bc21
  • squid-common_3.5.12-1ubuntu7.17+tuxcare.els2_all.deb
    sha:543db0f46cec9786b962206b50e7a20debae1aab
  • squid-purge_3.5.12-1ubuntu7.17+tuxcare.els2_amd64.deb
    sha:83fa07e01f1504167ef91fb846445be7ad72e59a
  • squid3_3.5.12-1ubuntu7.17+tuxcare.els2_all.deb
    sha:46d916e0c53bdd853b2d5c4a20ca183a168e5df5
  • squidclient_3.5.12-1ubuntu7.17+tuxcare.els2_amd64.deb
    sha:8cdcff5e630def64dde3dbf64206756f818a9226
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.