SUSE-SU-2023:4825-1
Dashboard / Vulnerabilities / SUSE-SU-2023:4825-1
SUSE-SU-2023:4825-1
Summary: Security update for squid
Details: This update for squid fixes the following issues: - CVE-2023-49285: Fixed buffer over read bug on HTTP Message processing flow (bsc#1217813) - CVE-2023-49286: Fixed Denial of Service vulnerability in helper process management (bsc#1217815) - Fix X-Forwarded-For Stack Overflow (bsc#1217654)
References: https://www.suse.com/support/update/announcement/2023/suse-su-20234825-1/, https://bugzilla.suse.com/1217654, https://bugzilla.suse.com/1217813, https://bugzilla.suse.com/1217815, https://www.suse.com/security/cve/CVE-2023-49285, https://www.suse.com/security/cve/CVE-2023-49286
Affected packages
Package
Name: squid
Purl: pkg:rpm/suse/squid&distro=SUSE%20Linux%20Enterprise%20High%20Performance%20Computing%2015%20SP1-LTSS
Affected ranges
Type: ECOSYSTEM
Events:
