RHSA-2024:0071: Important: squid security update
Important: squid security update
Other sources
Squid is a high-performance proxy caching server for web clients, supporting FTP, Gopher, and HTTP data objects.Security Fix(es): squid: Denial of Service in SSL Certificate validation (CVE-2023-46724) squid: NULL pointer dereference in the gopher protocol code (CVE-2023-46728) squid: Buffer over-read in the HTTP Message processing feature (CVE-2023-49285) squid: Incorrect Check of Function Return Value In Helper Process management (CVE-2023-49286) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
— Red Hat
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID RHSA-2024:0071 about?
RHSA-2024:0071 addresses a security update for the Squid package on Red Hat Enterprise Linux.
How do I fix RHSA-2024:0071?
You can fix RHSA-2024:0071 by updating the Squid package to version 5.5-6.el9_3.5 or later.
What versions of Squid are affected by RHSA-2024:0071?
RHSA-2024:0071 affects versions prior to 5.5-6.el9_3.5 of the Squid package.
What platforms are impacted by RHSA-2024:0071?
RHSA-2024:0071 impacts Red Hat Enterprise Linux for ARM 64, x86_64, and ppc64le architectures.
Is there a specific package to look for in RHSA-2024:0071?
The specific package to look for in RHSA-2024:0071 is the Squid package, version 5.5-6.el9_3.5.