Release Info

Advisory: CLSA-2024:1716272474

OS: Ubuntu 16.04 ELS

Public date: 2024-05-21 02:21:16

Project: squid

Version: 3.5.12-1ubuntu7.17+tuxcare.els8

Errata link: https://errata.cloudlinux.com/ubuntu16-els/CLSA-2024-1716272474.html

Changelog

* SECURITY UPDATE: Denial of Service attack against HTTP header parsing - debian/patches/CVE-2023-49288.patch: fix unintentional freeing in TRACE request handler - CVE-2023-49288

Update

Update command: apt-get update apt-get --only-upgrade install squid*

Packages list

squid_3.5.12-1ubuntu7.17+tuxcare.els8_amd64.deb squid-cgi_3.5.12-1ubuntu7.17+tuxcare.els8_amd64.deb squid-common_3.5.12-1ubuntu7.17+tuxcare.els8_all.deb squid-purge_3.5.12-1ubuntu7.17+tuxcare.els8_amd64.deb squid3_3.5.12-1ubuntu7.17+tuxcare.els8_all.deb squidclient_3.5.12-1ubuntu7.17+tuxcare.els8_amd64.deb

CVEs

CVE-2023-49288