[CLSA-2025:1763413374] Fix CVE(s): CVE-2025-62168
Type:
security
Severity:
Important
Release date:
2025-11-18 11:54:30 UTC
Description:
* SECURITY UPDATE: information disclosure in error handling - debian/patches/CVE-2025-62168.patch: Fix bug where proxy auth data was visible to scripts by redacting credentials from error page code expansion output and email links - CVE-2025-62168
Updated packages:
  • squid_3.5.12-1ubuntu7.17+tuxcare.els12_amd64.deb
    sha:f55896126b76a36e5add86481723ef199c133da7
  • squid-cgi_3.5.12-1ubuntu7.17+tuxcare.els12_amd64.deb
    sha:0e4ee507112710d688e24fe6e2e3eb9780616db3
  • squid-common_3.5.12-1ubuntu7.17+tuxcare.els12_all.deb
    sha:0ea9f2e5586f499d9d2936953d787f1be14a383a
  • squid-purge_3.5.12-1ubuntu7.17+tuxcare.els12_amd64.deb
    sha:575eecdc23b9dfa273c9c872db401a1c316fefa0
  • squid3_3.5.12-1ubuntu7.17+tuxcare.els12_all.deb
    sha:8fb5da71a1e8e00e6855956cbdded65f492cd620
  • squidclient_3.5.12-1ubuntu7.17+tuxcare.els12_amd64.deb
    sha:4bb24fbe4f719b559ab164577d4cc1378a8753d6
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.