[CLSA-2024:1725012247] Fix CVE(s): CVE-2024-37894
Type:
security
Severity:
Moderate
Release date:
2024-08-30 10:04:10 UTC
Description:
* SECURITY UPDATE: Memory Corruption via Out-of-bounds Write in ESI variables assignment - debian/patches/CVE-2024-37894.patch: fix incorrect type declaration in TrieNode.cc to prevent potential type conversion issues - CVE-2024-37894
Updated packages:
  • squid_3.5.12-1ubuntu7.17+tuxcare.els9_amd64.deb
    sha:37f9ed03bbd44c90210e1d9fa40d3ea3f21d738e
  • squid-cgi_3.5.12-1ubuntu7.17+tuxcare.els9_amd64.deb
    sha:441593cd79063362d4108f01c671a0531b7c08d1
  • squid-common_3.5.12-1ubuntu7.17+tuxcare.els9_all.deb
    sha:35f99c837735cdad34d20f8713c0836cf17e893f
  • squid-purge_3.5.12-1ubuntu7.17+tuxcare.els9_amd64.deb
    sha:25190270cbb4601c4d2436b5b8323dea28edf431
  • squid3_3.5.12-1ubuntu7.17+tuxcare.els9_all.deb
    sha:40721e4ab63230235c00569345ce71f21a58f8df
  • squidclient_3.5.12-1ubuntu7.17+tuxcare.els9_amd64.deb
    sha:b6de89fe58c9a1604b051344e8c67a8c01a9d489
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.