First published: Mon Dec 16 2024(Updated: )
Important: squid security update
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/squid | <3.5.20-17.el7_9.13 | 3.5.20-17.el7_9.13 |
redhat/squid | <3.5.20-17.el7_9.13 | 3.5.20-17.el7_9.13 |
redhat/squid-debuginfo | <3.5.20-17.el7_9.13 | 3.5.20-17.el7_9.13 |
redhat/squid-migration-script | <3.5.20-17.el7_9.13 | 3.5.20-17.el7_9.13 |
redhat/squid-sysvinit | <3.5.20-17.el7_9.13 | 3.5.20-17.el7_9.13 |
redhat/squid-debuginfo | <3.5.20-17.el7_9.13 | 3.5.20-17.el7_9.13 |
redhat/squid-migration-script | <3.5.20-17.el7_9.13 | 3.5.20-17.el7_9.13 |
redhat/squid-sysvinit | <3.5.20-17.el7_9.13 | 3.5.20-17.el7_9.13 |
redhat/squid | <3.5.20-17.el7_9.13 | 3.5.20-17.el7_9.13 |
redhat/squid-debuginfo | <3.5.20-17.el7_9.13 | 3.5.20-17.el7_9.13 |
redhat/squid-migration-script | <3.5.20-17.el7_9.13 | 3.5.20-17.el7_9.13 |
redhat/squid-sysvinit | <3.5.20-17.el7_9.13 | 3.5.20-17.el7_9.13 |
Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, little endian | ||
Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) | ||
Red Hat Enterprise Linux Server - Extended Life Cycle Support (for IBM z Systems) | ||
Red Hat Enterprise Linux Server - Extended Life Cycle Support for IBM Power, big endian |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of RHSA-2024:11049 is classified as important.
CVE-2023-46846 refers to a vulnerability involving request/response smuggling in HTTP/1.1 and ICAP in Squid.
To fix RHSA-2024:11049, upgrade your Squid package to version 3.5.20-17.el7_9.13 or later.
RHSA-2024:11049 affects various versions of Red Hat Enterprise Linux Server that include the Squid package.
There are no specific workarounds recommended for the vulnerability; applying the update is the suggested action.