[CLSA-2026:1777544744] squid: Fix of CVE-2023-49288
Type:
security
Severity:
Important
Release date:
2026-05-02 01:11:59 UTC
Description:
- CVE-2023-49288: fix use-after-free in store_client lifetime by locking StoreEntry for the duration of the store_client object
Updated packages:
  • squid-3.5.20-17.0.5.el7_9.99.tuxcare.els6.x86_64.rpm
    sha:53aec46c34282a36c4cb5e90bd9d3241300b859db344d4f20e0017faa55ffe3f
  • squid-migration-script-3.5.20-17.0.5.el7_9.99.tuxcare.els6.x86_64.rpm
    sha:9092e9c946de5f529dca773f7da6dfa8894acb90b3de3414af08e6e8f600cbf9
  • squid-sysvinit-3.5.20-17.0.5.el7_9.99.tuxcare.els6.x86_64.rpm
    sha:34d3e1e114f24a0ba0bf164c6c5e9db7ca737a0535c03afca5b3c062c86c8a6f
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.