[CLSA-2026:1777738020] squid: Fix of CVE-2023-49288
Type:
security
Severity:
Important
Release date:
2026-05-06 07:04:18 UTC
Description:
- CVE-2023-49288: fix use-after-free in store_client lifetime by locking StoreEntry for the duration of the store_client object
Updated packages:
  • squid-3.5.20-17.0.5.el7_9.99.tuxcare.els6.x86_64.rpm
    sha:12041b667d12b24334afeb84f4cfd0c32ccba1eab8dd6b1662ac53658b2427c6
  • squid-migration-script-3.5.20-17.0.5.el7_9.99.tuxcare.els6.x86_64.rpm
    sha:ca4ed59c6d45151d3ce0c3cbaa2146611c535b79b681c7f54c8873f07482a1ed
  • squid-sysvinit-3.5.20-17.0.5.el7_9.99.tuxcare.els6.x86_64.rpm
    sha:791eced9094d9e36b63a2d8b5fba1fdad9ff92e3c73cae350d0fd2e86693b8df
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.