[CLSA-2026:1790851347] squid: Fix of CVE-2025-62168
Type:
security
Severity:
None
Release date:
2026-10-02 17:18:35 UTC
Description:
- Bump release to sort above Oracle Linux 7 squid-3.5.20-17.0.11.el7_9.13 - CVE-2025-62168: complete fix: also redact credentials in the %W mailto body, from Oracle 17.0.9 - Deny URN requests in the default squid.conf (upstream workaround), from Oracle 17.0.7
Updated packages:
  • squid-3.5.20-17.0.11.el7_9.99.tuxcare.els1.aarch64.rpm
    sha:6935cbd9156387c27e281e510befe1f7da31f851a9c7a6911cfc7020eacf5dab
  • squid-3.5.20-17.0.11.el7_9.99.tuxcare.els1.i686.rpm
    sha:8252d405ac626988ba472da9bfc3b41337aabba8dd054fe70a5e23983eb555ba
  • squid-3.5.20-17.0.11.el7_9.99.tuxcare.els1.x86_64.rpm
    sha:652e47abbc2c63e3a6ff73b7f5fa302a5f1f76262baf3d82503ec4d54c2e5614
  • squid-migration-script-3.5.20-17.0.11.el7_9.99.tuxcare.els1.aarch64.rpm
    sha:39d7bd0dd00510d2c39388b91f70654e256e0116db06c15cfadc2c4597762060
  • squid-migration-script-3.5.20-17.0.11.el7_9.99.tuxcare.els1.i686.rpm
    sha:447f9842acf9d8e22885b1eb02760d5f6fef932f193b901d8c83ec34c44e1829
  • squid-migration-script-3.5.20-17.0.11.el7_9.99.tuxcare.els1.x86_64.rpm
    sha:8eb477eec3fa0f9b9fa12e1adb4c23da58e1aa256762372bb90d02f5a5fa7d72
  • squid-sysvinit-3.5.20-17.0.11.el7_9.99.tuxcare.els1.aarch64.rpm
    sha:f6a3a8405ea05d5e6eb098455137b25e569d80d141688a7ca088424587bd32dc
  • squid-sysvinit-3.5.20-17.0.11.el7_9.99.tuxcare.els1.i686.rpm
    sha:792edf304d99e5a276463aed088bf4ee29b274f23aef15c13c4a696e4cc4927e
  • squid-sysvinit-3.5.20-17.0.11.el7_9.99.tuxcare.els1.x86_64.rpm
    sha:49ac4499a73f6254d642b5e9149f32d896f23a527d0666e509a35f93365da0f0
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.