[CLSA-2026:1777539711] squid: Fix of CVE-2023-49288
Type:
security
Severity:
Important
Release date:
2026-04-30 09:39:24 UTC
Description:
- CVE-2023-49288: fix use-after-free in store_client lifetime by locking StoreEntry for the duration of the store_client object
Updated packages:
  • squid-3.5.20-17.0.5.el7_9.99.tuxcare.els6.x86_64.rpm
    sha:cfbd94c33336b545a56fd7fc0de9ea38b11a9ed79061360409e3390a8edb3fce
  • squid-migration-script-3.5.20-17.0.5.el7_9.99.tuxcare.els6.x86_64.rpm
    sha:4286a4760120115d980263e7a93ecd509f771054598b7ab6fb0a540eab7acf21
  • squid-sysvinit-3.5.20-17.0.5.el7_9.99.tuxcare.els6.x86_64.rpm
    sha:cc5a375c94b89c5691403baeefc5c386892a89ef1ef4d97009f4e20edeea58f8
Notes:
This page is generated automatically and has not been checked for errors. For clarification or corrections please contact the CloudLinux Packaging Team.