[SUSE-SU-2024:0298-1] Security update for squid

Severity Important
Affected Packages 8
CVEs 2

Security update for squid

This update for squid fixes the following issues:

  • CVE-2023-50269: fixed X-Forwarded-For Stack Overflow. (bsc#1217654)
  • CVE-2024-23638: fixed Denial of Service attack against Cache Manager error responses. (bsc#1219131)
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/squid?arch=x86_64&distro=sles-15&sp=3 suse squid < 4.17-150000.5.49.1 sles-15 x86_64
Affected pkg:rpm/suse/squid?arch=x86_64&distro=sles-15&sp=2 suse squid < 4.17-150000.5.49.1 sles-15 x86_64
Affected pkg:rpm/suse/squid?arch=s390x&distro=sles-15&sp=3 suse squid < 4.17-150000.5.49.1 sles-15 s390x
Affected pkg:rpm/suse/squid?arch=s390x&distro=sles-15&sp=2 suse squid < 4.17-150000.5.49.1 sles-15 s390x
Affected pkg:rpm/suse/squid?arch=ppc64le&distro=sles-15&sp=3 suse squid < 4.17-150000.5.49.1 sles-15 ppc64le
Affected pkg:rpm/suse/squid?arch=ppc64le&distro=sles-15&sp=2 suse squid < 4.17-150000.5.49.1 sles-15 ppc64le
Affected pkg:rpm/suse/squid?arch=aarch64&distro=sles-15&sp=3 suse squid < 4.17-150000.5.49.1 sles-15 aarch64
Affected pkg:rpm/suse/squid?arch=aarch64&distro=sles-15&sp=2 suse squid < 4.17-150000.5.49.1 sles-15 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...