UbuntuUpdates.org

Package "squid"

Name: squid

Description:

Full featured Web Proxy cache (HTTP proxy GnuTLS flavour)

Latest version: 6.13-0ubuntu0.24.04.2
Release: noble (24.04)
Level: security
Repository: main
Homepage: http://www.squid-cache.org

Links


Download "squid"


Other versions of "squid" in Noble

Repository Area Version
base universe 6.6-1ubuntu5
base main 6.6-1ubuntu5
security universe 6.13-0ubuntu0.24.04.2
updates main 6.13-0ubuntu0.24.04.2
updates universe 6.13-0ubuntu0.24.04.2

Packages in group

Deleted packages are displayed in grey.


Changelog

Version: 6.13-0ubuntu0.24.04.2 2025-10-06 14:07:27 UTC

  squid (6.13-0ubuntu0.24.04.2) noble-security; urgency=medium

  * SECURITY UPDATE: ASN.1 encoding mishandling
    - debian/patches/CVE-2025-59362.patch: fix ASN.1 encoding of long SNMP
      OIDs in lib/snmplib/asn1.c.
    - CVE-2025-59362

 -- Marc Deslauriers <email address hidden> Fri, 03 Oct 2025 09:35:08 -0400

Source diff to previous version
CVE-2025-59362 Squid through 7.1 mishandles ASN.1 encoding of long SNMP OIDs. This occurs in asn_build_objid in lib/snmplib/asn1.c.

Version: 6.6-1ubuntu5.1 2024-07-22 11:07:25 UTC

  squid (6.6-1ubuntu5.1) noble-security; urgency=medium

  * SECURITY UPDATE: DoS in ESI processing using multi-byte characters
    - debian/patches/CVE-2024-37894.patch: fix variable datatype to handle
      variables names outside standard ASCII characters
    - CVE-2024-37894

 -- Vyom Yadav <email address hidden> Sun, 07 Jul 2024 17:30:16 +0530

CVE-2024-37894 Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to an Out-of-bounds Write error when assigning ESI variables, Squid i



About   -   Send Feedback to @ubuntu_updates