[SUSE-SU-2024:1114-1] Security update for squid

Severity Important
Affected Packages 8
CVEs 2

Security update for squid

This update for squid fixes the following issues:

  • CVE-2024-25617: Fixes denial of service in HTTP header parser (bsc#1219960)
  • CVE-2024-25111: Fixes Chunked Encoding Stack Overflow (bsc#1216715)
Type Package URL Namespace Name / Product Version Distribution / Platform Arch Patch / Fix
Affected pkg:rpm/suse/squid?arch=x86_64&distro=sles-15&sp=3 suse squid < 4.17-150000.5.52.1 sles-15 x86_64
Affected pkg:rpm/suse/squid?arch=x86_64&distro=sles-15&sp=2 suse squid < 4.17-150000.5.52.1 sles-15 x86_64
Affected pkg:rpm/suse/squid?arch=s390x&distro=sles-15&sp=3 suse squid < 4.17-150000.5.52.1 sles-15 s390x
Affected pkg:rpm/suse/squid?arch=s390x&distro=sles-15&sp=2 suse squid < 4.17-150000.5.52.1 sles-15 s390x
Affected pkg:rpm/suse/squid?arch=ppc64le&distro=sles-15&sp=3 suse squid < 4.17-150000.5.52.1 sles-15 ppc64le
Affected pkg:rpm/suse/squid?arch=ppc64le&distro=sles-15&sp=2 suse squid < 4.17-150000.5.52.1 sles-15 ppc64le
Affected pkg:rpm/suse/squid?arch=aarch64&distro=sles-15&sp=3 suse squid < 4.17-150000.5.52.1 sles-15 aarch64
Affected pkg:rpm/suse/squid?arch=aarch64&distro=sles-15&sp=2 suse squid < 4.17-150000.5.52.1 sles-15 aarch64
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories Exploits PoC Pubblication Date Modification Date
# CVE Description CVSS EPSS EPSS Trend (30 days) Affected Products Weaknesses Security Advisories PoC Pubblication Date Modification Date
Loading...