Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2026-8317

Опубликовано: 16 апр. 2026
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2026-8317: squid:4 security update (IMPORTANT)

libecap [1.0.1-2]

  • Resolves: #1695587 - Ensure modular RPM upgrade path

[1.0.1-1]

  • new version 1.0.1
  • autoconf.h moved from lookaside to dist-git

[1.0.0-7]

[1.0.0-6]

[1.0.0-5]

[1.0.0-4]

[1.0.0-3]

[1.0.0-2]

  • Rebuilt for GCC 5 C++11 ABI change

[1.0.0-1]

  • new version 1.0.0

[0.2.0-10]

squid [7:4.15-10.11]

  • Fix patch for CVE-2026-32748
  • Resolves: RHEL-160675

[7:4.15-10.10]

  • Resolves: RHEL-160675 - squid:4/squid: Squid: Denial of Service via crafted ICP traffic (CVE-2026-32748)
  • Resolves: RHEL-160674 - squid:4/squid: Squid: Denial of Service via heap Use-After-Free vulnerability in ICP handling (CVE-2026-33526)

[7:4.15-10.9]

  • Resolves: RHEL-122484 - squid: Squid vulnerable to information disclosure via authentication credential leakage in error handling (CVE-2025-62168)

[7:4.15-10.6]

  • Resolves: RHEL-84420 - A squid child process causes a memory reference error and the squid service terminates abnormally

[7:4.15-10.5]

  • Resolves: RHEL-66120 - squid caches DNS entries despite having TTL set to 0

[7:4.15-10.4]

  • Resolves: RHEL-67870 - Remove gopher mention from spec file

[7:4.15-10.3]

  • Resolves: RHEL-22593 - CVE-2024-23638 squid:4/squid: vulnerable to a Denial of Service attack against Cache Manager error responses

[7:4.15-10.2]

  • Disable ESI support
  • Resolves: RHEL-65075 - CVE-2024-45802 squid:4/squid: Denial of Service processing ESI response content

[7:4.15-10.1]

  • Resolves: RHEL-56024 - (Regression) Transfer-encoding:chunked data is not sent to the client in its complementary

[7:4.15-10]

  • Resolves: RHEL-28529 - squid:4/squid: Denial of Service in HTTP Chunked Decoding (CVE-2024-25111)
  • Resolves: RHEL-26088 - squid:4/squid: denial of service in HTTP header parser (CVE-2024-25617)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

Module squid:4 is enabled

libecap

1.0.1-2.module+el8.9.0+90083+f7556140

libecap-devel

1.0.1-2.module+el8.9.0+90083+f7556140

squid

4.15-10.module+el8.10.0+90877+04e4d7e0.11

Oracle Linux x86_64

Module squid:4 is enabled

libecap

1.0.1-2.module+el8.9.0+90083+f7556140

libecap-devel

1.0.1-2.module+el8.9.0+90083+f7556140

squid

4.15-10.module+el8.10.0+90877+04e4d7e0.11

Связанные CVE

Связанные уязвимости

rocky
4 месяца назад

Important: squid:4 security update

rocky
4 месяца назад

Important: squid security update

rocky
4 месяца назад

Important: squid security update

oracle-oval
2 месяца назад

ELSA-2026-8880: squid security update (IMPORTANT)

oracle-oval
4 месяца назад

ELSA-2026-8119: squid security update (IMPORTANT)