|
|
Subscribe / Log in / New account

Fedora alert FEDORA-2010-3064 (squid)

From:  updates@fedoraproject.org
To:  package-announce@lists.fedoraproject.org
Subject:  [SECURITY] Fedora 12 Update: squid-3.1.0.16-6.fc12
Date:  Sat, 27 Feb 2010 03:42:08 +0000
Message-ID:  <20100227034209.08FB8110DC3@bastion02.phx2.fedoraproject.org>

-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2010-3064 2010-02-27 02:57:59 -------------------------------------------------------------------------------- Name : squid Product : Fedora 12 Version : 3.1.0.16 Release : 6.fc12 URL : http://www.squid-cache.org Summary : The Squid proxy caching server Description : Squid is a high-performance proxy caching server for Web clients, supporting FTP, gopher, and HTTP data objects. Unlike traditional caching software, Squid handles all requests in a single, non-blocking, I/O-driven process. Squid keeps meta data and especially hot objects cached in RAM, caches DNS lookups, supports non-blocking DNS lookups, and implements negative caching of failed requests. Squid consists of a main server program squid, a Domain Name System lookup program (dnsserver), a program for retrieving FTP data (ftpget), and some management and client tools. -------------------------------------------------------------------------------- Update Information: Denial of service issue in HTCP processing (SQUID-2010:2) http://www.squid- cache.org/Advisories/SQUID-2010_2.txt -------------------------------------------------------------------------------- ChangeLog: * Mon Feb 15 2010 Henrik Nordstrom <henrik@henriknordstrom.net> - 7:3.1.0.16-6 - Patch for Squid security advisory SQUID-2010:2, denial of service issue in HTCP processing (CVE-2010-0639) * Sun Feb 7 2010 Henrik Nordstrom <henrik@henriknordstrom.net> - 7:3.1.0.16-5 - Rebuild 3.1.0.16 with corrected upstream release. * Sat Feb 6 2010 Jiri Skala <jskala@redhat.com> - 7:3.1.0.16-4 - fixes assertion during start up * Mon Feb 1 2010 Henrik Nordstrom <henrik@henriknordstrom.net> 7:3.1.0.16-3 - Upgrade to 3.1.0.16 for DNS related DoS fix (Squid-2010:1) * Sat Jan 9 2010 Henrik Nordstrom <henrik@henriknordstrom.net> - 7:3.1.0.15-3 - fixed #551302 PROXY needs libcap. Also increases security a little. - merged relevant upstream bugfixes waiting for next 3.1 release * Mon Nov 23 2009 Henrik Nordstrom <henrik@henriknordstrom.net> - 7:3.1.0.15-2 - Update to 3.1.0.15 with a number of bugfixes and a workaround for ICEcast/SHOUTcast streams. * Mon Nov 23 2009 Jiri Skala <jskala@redhat.com> 7:3.1.0.14-2 - fixed #532930 Syntactic error in /etc/init.d/squid - fixed #528453 cannot initialize cache_dir with user specified config file -------------------------------------------------------------------------------- References: [ 1 ] Bug #565426 - squid: HTCP packet temporary DoS (SQUID-2010:2) https://bugzilla.redhat.com/show_bug.cgi?id=565426 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update squid' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list package-announce@lists.fedoraproject.org https://admin.fedoraproject.org/mailman/listinfo/package-...


to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds