Oval Definition:oval:org.opensuse.security:def:60616
Revision Date:2020-12-01Version:1
Title:Security update for squid (Moderate)
Description:

This update for squid fixes the following issues:

Security issue fixed:

- CVE-2019-12529: Fixed a potential denial of service associated with HTTP Basic Authentication credentials (bsc#1141329). - CVE-2019-12525: Fixed a denial of service during processing of HTTP Digest Authentication credentials (bsc#1141332). - CVE-2019-13345: Fixed a cross site scripting vulnerability via user_name or auth parameter in cachemgr.cgi (bsc#1140738).
Family:unixClass:patch
Status:Reference(s):1056134
1068664
1077993
1078806
1078813
1087813
1117632
1117951
1120386
1127820
1127821
1127822
1133147
1134689
1136085
1137325
1140738
1141329
1141332
1145604
1145929
1149332
1149591
1151021
1153332
1154118
1154844
1155689
1157155
1157157
1157303
1157804
1158021
1158642
1158809
1158819
1159199
1159208
1159285
1159297
1159623
1159723
1159729
1159841
1159908
1159910
1159911
1159912
1160163
1160195
1160968
1161586
1162227
1162928
1162929
1162931
1163508
1163971
1163985
1164009
1164051
1164069
1164078
1164825
1164846
1165111
1165311
1165784
1165873
1165881
1165984
1165985
1167421
1167423
1167629
1168075
1168295
1168424
1168829
1168854
1170056
1170345
1170778
1170847
1171878
1171928
1172085
1173160
1175534
1176013
1176343
1176344
1176345
1176346
1176347
1176348
1176349
1176350
CVE-2012-0876
CVE-2016-0718
CVE-2016-4472
CVE-2016-5131
CVE-2016-9063
CVE-2017-1000158
CVE-2017-15412
CVE-2017-18255
CVE-2017-18379
CVE-2017-5130
CVE-2017-9233
CVE-2018-12126
CVE-2018-12127
CVE-2018-12130
CVE-2018-12178
CVE-2018-12180
CVE-2018-16301
CVE-2018-16476
CVE-2018-21008
CVE-2018-3630
CVE-2019-0221
CVE-2019-10130
CVE-2019-11091
CVE-2019-12418
CVE-2019-12525
CVE-2019-12529
CVE-2019-13345
CVE-2019-14615
CVE-2019-14835
CVE-2019-14896
CVE-2019-14897
CVE-2019-15165
CVE-2019-1551
CVE-2019-17563
CVE-2019-17569
CVE-2019-18675
CVE-2019-19066
CVE-2019-19319
CVE-2019-19447
CVE-2019-19767
CVE-2019-19768
CVE-2019-19965
CVE-2019-19966
CVE-2019-20054
CVE-2019-20096
CVE-2019-3701
CVE-2019-5108
CVE-2019-9455
CVE-2019-9458
CVE-2020-10029
CVE-2020-10690
CVE-2020-10720
CVE-2020-10745
CVE-2020-10942
CVE-2020-11494
CVE-2020-11608
CVE-2020-11609
CVE-2020-14364
CVE-2020-1720
CVE-2020-25595
CVE-2020-25596
CVE-2020-25597
CVE-2020-25599
CVE-2020-25600
CVE-2020-25601
CVE-2020-25603
CVE-2020-25604
CVE-2020-2583
CVE-2020-2590
CVE-2020-2593
CVE-2020-2601
CVE-2020-2604
CVE-2020-2654
CVE-2020-2659
CVE-2020-2732
CVE-2020-8647
CVE-2020-8648
CVE-2020-8649
CVE-2020-8992
CVE-2020-9383
CVE-2020-9484
SUSE-SU-2018:0401-1
SUSE-SU-2019:0152-1
SUSE-SU-2019:0579-1
SUSE-SU-2019:1687-1
SUSE-SU-2019:2089-1
SUSE-SU-2019:2669-1
SUSE-SU-2020:0474-1
SUSE-SU-2020:0497-1
SUSE-SU-2020:1275-1
SUSE-SU-2020:1498-1
SUSE-SU-2020:2066-1
SUSE-SU-2020:2787-1
Platform(s):openSUSE Leap 15.0
openSUSE Leap 15.1
SUSE Linux Enterprise Server 12 SP3
SUSE Linux Enterprise Server 12 SP3-ESPOS
SUSE Linux Enterprise Server 12 SP3-LTSS
SUSE Linux Enterprise Server 12 SP3-TERADATA
SUSE Linux Enterprise Server 12 SP4
SUSE Linux Enterprise Server 12 SP4-LTSS
SUSE OpenStack Cloud 8
SUSE OpenStack Cloud 9
SUSE OpenStack Cloud Crowbar 8
SUSE OpenStack Cloud Crowbar 9
Product(s):
Definition Synopsis
  • openSUSE Leap 15.0 is installed
  • AND Package Information
  • mutt-1.10.1-lp150.2.3 is installed
  • OR mutt-doc-1.10.1-lp150.2.3 is installed
  • OR mutt-lang-1.10.1-lp150.2.3 is installed
  • Definition Synopsis
  • openSUSE Leap 15.1 is installed
  • AND Package Information
  • znc-1.7.4-lp151.2.3 is installed
  • OR znc-devel-1.7.4-lp151.2.3 is installed
  • OR znc-lang-1.7.4-lp151.2.3 is installed
  • OR znc-perl-1.7.4-lp151.2.3 is installed
  • OR znc-python3-1.7.4-lp151.2.3 is installed
  • OR znc-tcl-1.7.4-lp151.2.3 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3 is installed
  • AND Package Information
  • libxml2-2.9.4-46.12 is installed
  • OR libxml2-2-2.9.4-46.12 is installed
  • OR libxml2-2-32bit-2.9.4-46.12 is installed
  • OR libxml2-doc-2.9.4-46.12 is installed
  • OR libxml2-tools-2.9.4-46.12 is installed
  • OR python-libxml2-2.9.4-46.12 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-ESPOS is installed
  • AND Package Information
  • kgraft-patch-4_4_180-94_100-default-2-2 is installed
  • OR kgraft-patch-SLE12-SP3_Update_27-2-2 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-LTSS is installed
  • AND Package Information
  • libpython3_4m1_0-3.4.10-25.39 is installed
  • OR python3-3.4.10-25.39 is installed
  • OR python3-base-3.4.10-25.39 is installed
  • OR python3-curses-3.4.10-25.39 is installed
  • OR python3-devel-3.4.10-25.39 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP3-TERADATA is installed
  • AND Package Information
  • openssh-7.2p2-74.35 is installed
  • OR openssh-askpass-gnome-7.2p2-74.35 is installed
  • OR openssh-fips-7.2p2-74.35 is installed
  • OR openssh-helpers-7.2p2-74.35 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4 is installed
  • AND Package Information
  • apache2-mod_apparmor-2.8.2-49 is installed
  • OR apparmor-docs-2.8.2-49 is installed
  • OR apparmor-parser-2.8.2-49 is installed
  • OR apparmor-profiles-2.8.2-49 is installed
  • OR apparmor-utils-2.8.2-49 is installed
  • OR libapparmor1-2.8.2-49 is installed
  • OR libapparmor1-32bit-2.8.2-49 is installed
  • OR pam_apparmor-2.8.2-49 is installed
  • OR pam_apparmor-32bit-2.8.2-49 is installed
  • OR perl-apparmor-2.8.2-49 is installed
  • Definition Synopsis
  • SUSE Linux Enterprise Server 12 SP4-LTSS is installed
  • AND Package Information
  • dovecot22-2.2.31-19.22 is installed
  • OR dovecot22-backend-mysql-2.2.31-19.22 is installed
  • OR dovecot22-backend-pgsql-2.2.31-19.22 is installed
  • OR dovecot22-backend-sqlite-2.2.31-19.22 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 8 is installed
  • AND squid-3.5.21-26.17 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud 9 is installed
  • AND Package Information
  • ardana-ansible-9.0+git.1560211997.7ac9792-3.3 is installed
  • OR ardana-barbican-9.0+git.1559292830.208d258-3.3 is installed
  • OR ardana-cassandra-9.0+git.1557220194.6a90deb-3.3 is installed
  • OR ardana-ceilometer-9.0+git.1557219517.7b97993-3.3 is installed
  • OR ardana-cinder-9.0+git.1559039284.6fc1d47-3.3 is installed
  • OR ardana-cluster-9.0+git.1557219586.7c96a6d-3.3 is installed
  • OR ardana-cobbler-9.0+git.1557219626.b190680-3.3 is installed
  • OR ardana-db-9.0+git.1560868957.42bcb70-3.3 is installed
  • OR ardana-designate-9.0+git.1558588538.9211022-3.3 is installed
  • OR ardana-glance-9.0+git.1559033522.5e5be1c-3.3 is installed
  • OR ardana-heat-9.0+git.1559036788.b727b53-3.3 is installed
  • OR ardana-horizon-9.0+git.1557219807.6036a8e-3.3 is installed
  • OR ardana-input-model-9.0+git.1557220534.883f8c9-3.3 is installed
  • OR ardana-installer-ui-9.0+git.1559171053.476225c-3.3 is installed
  • OR ardana-ironic-9.0+git.1560365077.17250c6-3.3 is installed
  • OR ardana-keystone-9.0+git.1559292289.b5ed172-3.3 is installed
  • OR ardana-logging-9.0+git.1557219914.6d7ebb5-3.3 is installed
  • OR ardana-magnum-9.0+git.1557219960.226e32b-3.3 is installed
  • OR ardana-manila-9.0+git.1556646861.58ce24f-3.3 is installed
  • OR ardana-memcached-9.0+git.1557219995.cd49525-3.3 is installed
  • OR ardana-monasca-9.0+git.1556731170.c8210e0-3.3 is installed
  • OR ardana-monasca-transform-9.0+git.1557220073.7e88cfa-3.3 is installed
  • OR ardana-mq-9.0+git.1560214193.fc0378b-3.3 is installed
  • OR ardana-neutron-9.0+git.1560464557.d2f6200-3.3 is installed
  • OR ardana-nova-9.0+git.1559869848.7a706df-3.3 is installed
  • OR ardana-octavia-9.0+git.1560519270.e0a2620-3.3 is installed
  • OR ardana-opsconsole-9.0+git.1553642196.ba23382-3.3 is installed
  • OR ardana-opsconsole-ui-9.0+git.1555530925.206f1a8-4.3 is installed
  • OR ardana-osconfig-9.0+git.1560269313.7ddaff2-3.3 is installed
  • OR ardana-service-9.0+git.1560974342.47a5b12-3.3 is installed
  • OR ardana-service-ansible-9.0+git.1557220501.ebd3011-3.3 is installed
  • OR ardana-ses-9.0+git.1554740095.48252d3-3.3 is installed
  • OR ardana-spark-9.0+git.1557220247.e78d1c3-3.3 is installed
  • OR ardana-swift-9.0+git.1559038506.cc119d9-3.3 is installed
  • OR ardana-tempest-9.0+git.1560949748.f0bd816-3.3 is installed
  • OR ardana-tls-9.0+git.1557220381.5641a2e-3.3 is installed
  • OR caasp-openstack-heat-templates-1.0+git.1560518045.ad7dc6d-3.3 is installed
  • OR documentation-suse-openstack-cloud-deployment-9.20190621-3.3 is installed
  • OR documentation-suse-openstack-cloud-operations-9.20190621-3.3 is installed
  • OR documentation-suse-openstack-cloud-security-9.20190621-3.3 is installed
  • OR documentation-suse-openstack-cloud-supplement-9.20190621-3.3 is installed
  • OR galera-python-clustercheck-0.0+git.1562242499.36b8b64-6.3 is installed
  • OR grafana-5.3.3-3.3 is installed
  • OR grafana-monasca-ui-drilldown-1.14.1~dev7-3.3 is installed
  • OR openstack-ceilometer-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-agent-central-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-agent-compute-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-agent-ipmi-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-agent-notification-11.0.2~dev13-3.3 is installed
  • OR openstack-ceilometer-polling-11.0.2~dev13-3.3 is installed
  • OR openstack-cinder-13.0.6~dev12-3.3 is installed
  • OR openstack-cinder-api-13.0.6~dev12-3.3 is installed
  • OR openstack-cinder-backup-13.0.6~dev12-3.3 is installed
  • OR openstack-cinder-scheduler-13.0.6~dev12-3.3 is installed
  • OR openstack-cinder-volume-13.0.6~dev12-3.3 is installed
  • OR openstack-dashboard-14.0.4~dev4-3.3 is installed
  • OR openstack-designate-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-agent-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-api-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-central-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-producer-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-sink-7.0.1~dev20-3.3 is installed
  • OR openstack-designate-worker-7.0.1~dev20-3.3 is installed
  • OR openstack-heat-11.0.3~dev5-3.3 is installed
  • OR openstack-heat-api-11.0.3~dev5-3.3 is installed
  • OR openstack-heat-api-cfn-11.0.3~dev5-3.3 is installed
  • OR openstack-heat-engine-11.0.3~dev5-3.3 is installed
  • OR openstack-heat-plugin-heat_docker-11.0.3~dev5-3.3 is installed
  • OR openstack-horizon-plugin-designate-ui-7.0.1~dev7-3.3 is installed
  • OR openstack-horizon-plugin-heat-ui-1.4.1~dev4-4.3 is installed
  • OR openstack-horizon-plugin-magnum-ui-5.0.2~dev9-3.3 is installed
  • OR openstack-horizon-plugin-monasca-ui-1.14.1~dev7-3.3 is installed
  • OR openstack-ironic-11.1.4~dev2-3.3 is installed
  • OR openstack-ironic-api-11.1.4~dev2-3.3 is installed
  • OR openstack-ironic-conductor-11.1.4~dev2-3.3 is installed
  • OR openstack-ironic-python-agent-3.3.2~dev13-3.3 is installed
  • OR openstack-keystone-14.1.1~dev7-3.3 is installed
  • OR openstack-magnum-7.1.1~dev24-3.3 is installed
  • OR openstack-magnum-api-7.1.1~dev24-3.3 is installed
  • OR openstack-magnum-conductor-7.1.1~dev24-3.3 is installed
  • OR openstack-manila-7.3.1~dev2-4.3 is installed
  • OR openstack-manila-api-7.3.1~dev2-4.3 is installed
  • OR openstack-manila-data-7.3.1~dev2-4.3 is installed
  • OR openstack-manila-scheduler-7.3.1~dev2-4.3 is installed
  • OR openstack-manila-share-7.3.1~dev2-4.3 is installed
  • OR openstack-monasca-agent-2.8.1~dev10-3.3 is installed
  • OR openstack-monasca-notification-1.14.1~dev8-6.3 is installed
  • OR openstack-neutron-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-dhcp-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-fwaas-13.0.2~dev14-3.3 is installed
  • OR openstack-neutron-gbp-5.0.1~dev443-3.3 is installed
  • OR openstack-neutron-ha-tool-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-l3-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-lbaas-13.0.1~dev12-3.3 is installed
  • OR openstack-neutron-lbaas-agent-13.0.1~dev12-3.3 is installed
  • OR openstack-neutron-linuxbridge-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-macvtap-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-metadata-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-metering-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-openvswitch-agent-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-server-13.0.4~dev89-3.3 is installed
  • OR openstack-neutron-vpnaas-13.0.2~dev4-3.3 is installed
  • OR openstack-neutron-vyatta-agent-13.0.2~dev4-3.3 is installed
  • OR openstack-nova-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-api-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-cells-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-compute-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-conductor-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-console-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-novncproxy-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-placement-api-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-scheduler-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-serialproxy-18.2.2~dev9-3.3 is installed
  • OR openstack-nova-vncproxy-18.2.2~dev9-3.3 is installed
  • OR openstack-octavia-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-amphora-agent-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-api-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-health-manager-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-housekeeping-3.1.2~dev2-3.3 is installed
  • OR openstack-octavia-worker-3.1.2~dev2-3.3 is installed
  • OR python-ardana-configurationprocessor-9.0+git.1558039547.f0d0ddf-3.4 is installed
  • OR python-barbican-tempest-plugin-0.1.0-4.3 is installed
  • OR python-ceilometer-11.0.2~dev13-3.3 is installed
  • OR python-cinder-13.0.6~dev12-3.3 is installed
  • OR python-cinderclient-4.0.2-3.3 is installed
  • OR python-cinderclient-doc-4.0.2-3.3 is installed
  • OR python-cinderlm-0.0.2+git.1541454501.6148725-3.3 is installed
  • OR python-designate-7.0.1~dev20-3.3 is installed
  • OR python-heat-11.0.3~dev5-3.3 is installed
  • OR python-horizon-14.0.4~dev4-3.3 is installed
  • OR python-horizon-plugin-designate-ui-7.0.1~dev7-3.3 is installed
  • OR python-horizon-plugin-heat-ui-1.4.1~dev4-4.3 is installed
  • OR python-horizon-plugin-magnum-ui-5.0.2~dev9-3.3 is installed
  • OR python-horizon-plugin-monasca-ui-1.14.1~dev7-3.3 is installed
  • OR python-ironic-11.1.4~dev2-3.3 is installed
  • OR python-ironicclient-2.5.2-4.3 is installed
  • OR python-ironicclient-doc-2.5.2-4.3 is installed
  • OR python-keystone-14.1.1~dev7-3.3 is installed
  • OR python-magnum-7.1.1~dev24-3.3 is installed
  • OR python-manila-7.3.1~dev2-4.3 is installed
  • OR python-manila-tempest-plugin-0.1.0-3.3 is installed
  • OR python-manilaclient-1.24.2-3.3 is installed
  • OR python-manilaclient-doc-1.24.2-3.3 is installed
  • OR python-monasca-agent-2.8.1~dev10-3.3 is installed
  • OR python-monasca-notification-1.14.1~dev8-6.3 is installed
  • OR python-neutron-13.0.4~dev89-3.3 is installed
  • OR python-neutron-fwaas-13.0.2~dev14-3.3 is installed
  • OR python-neutron-gbp-5.0.1~dev443-3.3 is installed
  • OR python-neutron-lbaas-13.0.1~dev12-3.3 is installed
  • OR python-neutron-vpnaas-13.0.2~dev4-3.3 is installed
  • OR python-nova-18.2.2~dev9-3.3 is installed
  • OR python-octavia-3.1.2~dev2-3.3 is installed
  • OR python-openstack_auth-14.0.4~dev4-3.3 is installed
  • OR python-os-brick-2.5.7-3.3 is installed
  • OR python-os-brick-common-2.5.7-3.3 is installed
  • OR python-oslo.db-4.40.2-3.3 is installed
  • OR python-proliantutils-2.8.4-1 is installed
  • OR supportutils-plugin-suse-openstack-cloud-9.0.1562324636.e7046a3-1 is installed
  • OR venv-openstack-barbican-7.0.1~dev18-3.2 is installed
  • OR venv-openstack-barbican-x86_64-7.0.1~dev18-3.2 is installed
  • OR venv-openstack-cinder-13.0.6~dev12-3.2 is installed
  • OR venv-openstack-cinder-x86_64-13.0.6~dev12-3.2 is installed
  • OR venv-openstack-designate-7.0.1~dev20-3.3 is installed
  • OR venv-openstack-designate-x86_64-7.0.1~dev20-3.3 is installed
  • OR venv-openstack-glance-17.0.1~dev16-3.3 is installed
  • OR venv-openstack-glance-x86_64-17.0.1~dev16-3.3 is installed
  • OR venv-openstack-heat-11.0.3~dev5-3.3 is installed
  • OR venv-openstack-heat-x86_64-11.0.3~dev5-3.3 is installed
  • OR venv-openstack-horizon-14.0.4~dev4-4.3 is installed
  • OR venv-openstack-horizon-x86_64-14.0.4~dev4-4.3 is installed
  • OR venv-openstack-ironic-11.1.4~dev2-4.3 is installed
  • OR venv-openstack-ironic-x86_64-11.1.4~dev2-4.3 is installed
  • OR venv-openstack-keystone-14.1.1~dev7-3.3 is installed
  • OR venv-openstack-keystone-x86_64-14.1.1~dev7-3.3 is installed
  • OR venv-openstack-magnum-7.1.1~dev24-4.3 is installed
  • OR venv-openstack-magnum-x86_64-7.1.1~dev24-4.3 is installed
  • OR venv-openstack-manila-7.3.1~dev2-3.3 is installed
  • OR venv-openstack-manila-x86_64-7.3.1~dev2-3.3 is installed
  • OR venv-openstack-monasca-2.7.1~dev10-3.3 is installed
  • OR venv-openstack-monasca-ceilometer-1.8.2~dev3-3.3 is installed
  • OR venv-openstack-monasca-ceilometer-x86_64-1.8.2~dev3-3.3 is installed
  • OR venv-openstack-monasca-x86_64-2.7.1~dev10-3.3 is installed
  • OR venv-openstack-neutron-13.0.4~dev89-6.3 is installed
  • OR venv-openstack-neutron-x86_64-13.0.4~dev89-6.3 is installed
  • OR venv-openstack-nova-18.2.2~dev9-3.3 is installed
  • OR venv-openstack-nova-x86_64-18.2.2~dev9-3.3 is installed
  • OR venv-openstack-octavia-3.1.2~dev2-4.3 is installed
  • OR venv-openstack-octavia-x86_64-3.1.2~dev2-4.3 is installed
  • OR venv-openstack-sahara-9.0.2~dev9-3.3 is installed
  • OR venv-openstack-sahara-x86_64-9.0.2~dev9-3.3 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 8 is installed
  • AND Package Information
  • ruby2.1-rubygem-activejob-4_2-4.2.9-3.6 is installed
  • OR rubygem-activejob-4_2-4.2.9-3.6 is installed
  • Definition Synopsis
  • SUSE OpenStack Cloud Crowbar 9 is installed
  • AND Package Information
  • xorg-x11-server-1.19.6-4.11 is installed
  • OR xorg-x11-server-extra-1.19.6-4.11 is installed
  • BACK