Oracle alert ELSA-2024-9644 (squid)
| From: | Errata Announcements for Oracle Linux via El-errata <el-errata@oss.oracle.com> | |
| To: | el-errata@oss.oracle.com | |
| Subject: | [El-errata] ELSA-2024-9644 Important: Oracle Linux 8 squid security update | |
| Date: | Sun, 17 Nov 2024 16:04:31 -0800 | |
| Message-ID: | <mailman.797.1731888279.5621.el-errata@oss.oracle.com> |
Oracle Linux Security Advisory ELSA-2024-9644 http://linux.oracle.com/errata/ELSA-2024-9644.html The following updated rpms for Oracle Linux 8 have been uploaded to the Unbreakable Linux Network: x86_64: libecap-1.0.1-2.module+el8.9.0+90083+f7556140.x86_64.rpm libecap-devel-1.0.1-2.module+el8.9.0+90083+f7556140.x86_64.rpm squid-4.15-10.module+el8.10.0+90442+8ef3f586.3.x86_64.rpm aarch64: libecap-1.0.1-2.module+el8.9.0+90083+f7556140.aarch64.rpm libecap-devel-1.0.1-2.module+el8.9.0+90083+f7556140.aarch64.rpm squid-4.15-10.module+el8.10.0+90442+8ef3f586.3.aarch64.rpm SRPMS: http://oss.oracle.com/ol8/SRPMS-updates//libecap-1.0.1-2.... http://oss.oracle.com/ol8/SRPMS-updates//squid-4.15-10.mo... Related CVEs: CVE-2024-23638 CVE-2024-45802 Description of changes: libecap squid [7:4.15-10.3] - Resolves: RHEL-22593 - CVE-2024-23638 squid:4/squid: vulnerable to a Denial of Service attack against Cache Manager error responses [7:4.15-10.2] - Disable ESI support - Resolves: RHEL-65075 - CVE-2024-45802 squid:4/squid: Denial of Service processing ESI response content [7:4.15-10.1] - Resolves: RHEL-56024 - (Regression) Transfer-encoding:chunked data is not sent to the client in its complementary _______________________________________________ El-errata mailing list El-errata@oss.oracle.com https://oss.oracle.com/mailman/listinfo/el-errata
