[Git][security-tracker-team/security-tracker][master] squid DSA

Moritz Muehlenhoff (@jmm) jmm at debian.org
Thu Aug 21 18:50:03 BST 2025



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
d8bc9fba by Moritz Mühlenhoff at 2025-08-21T19:42:03+02:00
squid DSA

- - - - -


3 changed files:

- data/CVE/list
- data/DSA/list
- data/dsa-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -188487,7 +188487,6 @@ CVE-2023-46847 (Squid is vulnerable to a Denial of Service,  where a remote atta
 	NOTE: https://megamansec.github.io/Squid-Security-Audit/digest-overflow.html
 CVE-2023-5824 (A flaw was found in Squid. The limits applied for validation of HTTP r ...)
 	- squid 6.5-1 (bug #1055249)
-	[bookworm] - squid <ignored> (Minor impact, too intrusive to backport to 5.x)
 	[bullseye] - squid <ignored> (Minor impact, too intrusive to backport to 5.x)
 	- squid3 <removed>
 	NOTE: https://github.com/squid-cache/squid/security/advisories/GHSA-543m-w2m2-g255


=====================================
data/DSA/list
=====================================
@@ -1,3 +1,6 @@
+[21 Aug 2025] DSA-5982-1 squid - security update
+	{CVE-2023-5824 CVE-2025-54574}
+	[bookworm] - squid 5.7-2+deb12u3
 [21 Aug 2025] DSA-5981-1 chromium - security update
 	{CVE-2025-9132}
 	[bookworm] - chromium 139.0.7258.138-1~deb12u1


=====================================
data/dsa-needed.txt
=====================================
@@ -70,8 +70,6 @@ ruby-saml/oldstable
 --
 sogo/oldstable
 --
-squid/oldstable (jmm)
---
 sympa/oldstable
 --
 thunderbird (jmm)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d8bc9fba822ab7fc0095bcc0b1535d1697e312ff

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/d8bc9fba822ab7fc0095bcc0b1535d1697e312ff
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20250821/8b15eb94/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list