Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2024-4861

Опубликовано: 25 июл. 2024
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2024-4861: squid security update (MODERATE)

[7:5.5-13]

  • Resolves: RHEL-45056 - squid: Out-of-bounds write error may lead to Denial of Service (CVE-2024-37894)
  • Resolves: RHEL-45643 - squid: vulnerable to a Denial of Service attack against Cache Manager error responses (CVE-2024-23638)

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

squid

5.5-13.el9_4

Oracle Linux x86_64

squid

5.5-13.el9_4

Связанные CVE

Связанные уязвимости

rocky
11 месяцев назад

Moderate: squid security update

CVSS3: 6.3
ubuntu
12 месяцев назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when assigning ESI variables, Squid is susceptible to a Memory Corruption error. This error can lead to a Denial of Service attack.

CVSS3: 6.3
redhat
12 месяцев назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when assigning ESI variables, Squid is susceptible to a Memory Corruption error. This error can lead to a Denial of Service attack.

CVSS3: 6.3
nvd
12 месяцев назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when assigning ESI variables, Squid is susceptible to a Memory Corruption error. This error can lead to a Denial of Service attack.

CVSS3: 6.3
debian
12 месяцев назад

Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and ...