[CLSA-2024:1710789017] Fix CVE(s): CVE-2024-25617
Type:
security
Severity:
Important
Release date:
2024-03-18 19:10:20 UTC
Description:
* SECURITY UPDATE: Denial of Service attack against HTTP header parsing - debian/patches/CVE-2024-25617.patch: Improve handling of expanding HTTP header values - CVE-2024-25617
Updated packages:
  • squid_3.5.27-1ubuntu1.14+tuxcare.els5_amd64.deb
    sha:77d3db255b27c0a1c102701b1877cad5d265f5d8
  • squid-cgi_3.5.27-1ubuntu1.14+tuxcare.els5_amd64.deb
    sha:bedc318d45b7ce4b327ef05d712374f00160b5e3
  • squid-common_3.5.27-1ubuntu1.14+tuxcare.els5_all.deb
    sha:312d16107d1bca4549f22b566cee4cab0be8cc59
  • squid-purge_3.5.27-1ubuntu1.14+tuxcare.els5_amd64.deb
    sha:7574934472c2a3070324ab92f847cf4ebcc82891
  • squid3_3.5.27-1ubuntu1.14+tuxcare.els5_all.deb
    sha:05cf4d47abab3c4fa5a85e0ab10afd91bf201a4d
  • squidclient_3.5.27-1ubuntu1.14+tuxcare.els5_amd64.deb
    sha:9b5fb42efa7c59a29125e02def33138183f686b3
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.