[CLSA-2026:1777539902] squid: Fix of CVE-2023-49288
Type:
security
Severity:
Important
Release date:
2026-04-30 09:05:06 UTC
Description:
- CVE-2023-49288: fix use-after-free in store_client lifetime by locking StoreEntry for the duration of the store_client object
Updated packages:
  • squid-3.5.20-17.0.5.el7_9.99.tuxcare.els6.x86_64.rpm
    sha:e0edd77e0fc13e697a2470ad60e1e5d268fa6a37a72d0ba95447822e6d23f175
  • squid-migration-script-3.5.20-17.0.5.el7_9.99.tuxcare.els6.x86_64.rpm
    sha:d72804f290571a0291f37f7b3f51daa8417fbb4fd5147b5603c15a4436bc7eba
  • squid-sysvinit-3.5.20-17.0.5.el7_9.99.tuxcare.els6.x86_64.rpm
    sha:919b395aef1d9bedbae76538600cc1e023c9c6ea2b641bbd39f3b55f48d55c33
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.