Release Info

Advisory: CLSA-2024:1725012269

OS: Ubuntu 18.04 ELS

Public date: 2024-08-30 06:04:31

Project: squid

Version: 3.5.27-1ubuntu1.14+tuxcare.els7

Errata link: https://errata.cloudlinux.com/ubuntu18-els/CLSA-2024-1725012269.html

Changelog

* SECURITY UPDATE: Memory Corruption via Out-of-bounds Write in ESI variable assignment - debian/patches/CVE-2024-37894.patch: fix incorrect type declaration in TrieNode.cc to prevent potential type conversion issues - CVE-2024-37894

Update

Update command: apt-get update apt-get --only-upgrade install squid*

Packages list

squid_3.5.27-1ubuntu1.14+tuxcare.els7_amd64.deb squid-cgi_3.5.27-1ubuntu1.14+tuxcare.els7_amd64.deb squid-common_3.5.27-1ubuntu1.14+tuxcare.els7_all.deb squid-purge_3.5.27-1ubuntu1.14+tuxcare.els7_amd64.deb squid3_3.5.27-1ubuntu1.14+tuxcare.els7_all.deb squidclient_3.5.27-1ubuntu1.14+tuxcare.els7_amd64.deb

CVEs

CVE-2024-37894