Mageia alert MGASA-2024-0265 (squid)
From: | Mageia Updates <buildsystem-daemon@mageia.org> | |
To: | updates-announce@ml.mageia.org | |
Subject: | [updates-announce] MGASA-2024-0265: Updated squid packages fix security vulnerability | |
Date: | Sun, 14 Jul 2024 07:24:16 +0200 | |
Message-ID: | <20240714052416.527CAA0D5E@duvel.mageia.org> | |
Archive-link: | Article |
MGASA-2024-0265 - Updated squid packages fix security vulnerability Publication date: 14 Jul 2024 URL: https://advisories.mageia.org/MGASA-2024-0265.html Type: security Affected Mageia releases: 9 CVE: CVE-2024-37894 Description: Due to an Out-of-bounds Write error when assigning ESI variables, Squid is susceptible to a Memory Corruption error. This error can lead to a Denial of Service attack. (CVE-2024-37894) References: - https://bugs.mageia.org/show_bug.cgi?id=33363 - https://lists.suse.com/pipermail/sle-security-updates/202... - https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2024-3... SRPMS: - 9/core/squid-5.9-1.4.mga9