[CLSA-2024:1714462008] Fix CVE(s): CVE-2023-49288
Type:
security
Severity:
Important
Release date:
2024-04-30 07:26:51 UTC
Description:
* SECURITY UPDATE: Denial of Service attack against HTTP header parsing - debian/patches/CVE-2023-49288.patch: fix unintention freeing in TRACE request handler - CVE-2023-49288
Updated packages:
  • squid_3.5.27-1ubuntu1.14+tuxcare.els6_amd64.deb
    sha:12af1f6388cd6ef6ea66a3cbc6fe9c8a5b0afa97
  • squid-cgi_3.5.27-1ubuntu1.14+tuxcare.els6_amd64.deb
    sha:ce9d5d3d6e4cce9db0913a2c272317a53134a1fd
  • squid-common_3.5.27-1ubuntu1.14+tuxcare.els6_all.deb
    sha:2f3ff54665a0a7a0937b346c5c5efc225d8bde2b
  • squid-purge_3.5.27-1ubuntu1.14+tuxcare.els6_amd64.deb
    sha:c90f7aa24e6b4b59ee9ff19a335611d88fc1cb4b
  • squid3_3.5.27-1ubuntu1.14+tuxcare.els6_all.deb
    sha:38a88f25f0a7c4977b24e3b96c4040d3f92dd01c
  • squidclient_3.5.27-1ubuntu1.14+tuxcare.els6_amd64.deb
    sha:d1813b4b6132f6efdbf74093bf62f07f8572ff44
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.