First published: Mon Jul 22 2019(Updated: )
USN-4065-1 fixed several vulnerabilities in Squid. This update provides the corresponding update for Ubuntu 12.04 ESM. Original advisory details: It was discovered that Squid incorrectly handled Digest authentication. A remote attacker could possibly use this issue to cause Squid to crash, resulting in a denial of service. (CVE-2019-12525) It was discovered that Squid incorrectly handled Basic authentication. A remote attacker could possibly use this issue to cause Squid to crash, resulting in a denial of service. (CVE-2019-12529)
Affected Software | Affected Version | How to fix |
---|---|---|
All of | ||
ubuntu/squid3 | <3.1.19-1ubuntu3.12.04.10 | 3.1.19-1ubuntu3.12.04.10 |
Ubuntu OpenSSH Client | =12.04 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
USN-4065-2 addresses several vulnerabilities in Squid, including CVE-2019-12525 and CVE-2019-12529.
The severity of the vulnerabilities fixed by USN-4065-2 depends on the specific vulnerability. Please refer to the associated CVEs for more information.
To fix the vulnerabilities addressed by USN-4065-2, you should update Squid to the latest version available for your operating system.
You can find more information about USN-4065-2 on the Ubuntu Security Notice page: https://ubuntu.com/security/notices/USN-4065-2