Oval Definition:oval:org.opensuse.security:def:105422
Revision Date:2020-02-26Version:1
Title:Security update for squid (Moderate)
Description:

This update for squid to version 4.10 fixes the following issues:

Security issues fixed:

- CVE-2019-12528: Fixed an information disclosure flaw in the FTP gateway (bsc#1162689). - CVE-2020-8449: Fixed a buffer overflow when squid is acting as reverse-proxy (bsc#1162687). - CVE-2020-8450: Fixed a buffer overflow when squid is acting as reverse-proxy (bsc#1162687). - CVE-2020-8517: Fixed a buffer overflow in ext_lm_group_acl when processing NTLM Authentication credentials (bsc#1162691).

Non-security issue fixed:

- Improved cache handling with chunked responses.
Family:unixClass:patch
Status:Reference(s):1162687
1162689
1162691
CVE-2019-12528
CVE-2020-8449
CVE-2020-8450
CVE-2020-8517
SUSE-SU-2020:0493-1
Platform(s):SUSE Linux Enterprise High Performance Computing 15 SP1
SUSE Linux Enterprise Module for Server Applications 15 SP1
SUSE Linux Enterprise Server 15 SP1
SUSE Linux Enterprise Server for SAP Applications 15 SP1
SUSE Linux Enterprise Storage 6
SUSE Manager Proxy 4.0
SUSE Manager Server 4.0
Product(s):
Definition Synopsis
  • SUSE Linux Enterprise Module for Server Applications 15 SP1 is installed
  • AND squid-4.10-5.14.1 is installed
  • BACK