[Git][security-tracker-team/security-tracker][master] Reserve DLA-4697-1 for squid

Utkarsh Gupta (@utkarsh) utkarsh at debian.org
Thu Jul 23 23:33:14 BST 2026



Utkarsh Gupta pushed to branch master at Debian Security Tracker / security-tracker


Commits:
ac2ac446 by Utkarsh Gupta at 2026-07-24T04:02:13+05:30
Reserve DLA-4697-1 for squid

- - - - -


3 changed files:

- data/CVE/list
- data/DLA/list
- data/dla-needed.txt


Changes:

=====================================
data/CVE/list
=====================================
@@ -84465,8 +84465,6 @@ CVE-2026-3608 (Sending a maliciously crafted message to the kea-ctrl-agent, kea-
 CVE-2026-33515 (Squid is a caching proxy for the Web. Prior to version 7.5, due to imp ...)
 	{DSA-6360-1}
 	- squid 7.5-1
-	[bookworm] - squid <no-dsa> (Minor issue)
-	[bullseye] - squid <postponed> (Minor issue)
 	NOTE: https://www.openwall.com/lists/oss-security/2026/03/25/4
 	NOTE: Fxied by: https://github.com/squid-cache/squid/commit/8138e909d2058d4401e0ad49b583afaec912b165 (SQUID_7_5)
 CVE-2026-32748 (Squid is a caching proxy for the Web. Prior to version 7.5, due to pre ...)
@@ -84479,8 +84477,6 @@ CVE-2026-32748 (Squid is a caching proxy for the Web. Prior to version 7.5, due
 CVE-2026-33526 (Squid is a caching proxy for the Web. Prior to version 7.5, due to hea ...)
 	{DSA-6360-1}
 	- squid 7.5-1
-	[bookworm] - squid <no-dsa> (Minor issue)
-	[bullseye] - squid <postponed> (Minor issue)
 	NOTE: https://www.openwall.com/lists/oss-security/2026/03/25/2
 	NOTE: Fixed by: https://github.com/squid-cache/squid/commit/8a7d42f9d44befb8fcbbb619505587c8de6a1e91 (SQUID_7_5)
 CVE-2026-23395 (In the Linux kernel, the following vulnerability has been resolved:  B ...)


=====================================
data/DLA/list
=====================================
@@ -1,3 +1,7 @@
+[24 Jul 2026] DLA-4697-1 squid - security update
+	{CVE-2026-33515 CVE-2026-33526 CVE-2026-47729 CVE-2026-50012}
+	[bullseye] - squid 4.13-10+deb11u7
+	[bookworm] - squid 5.7-2+deb12u6
 [23 Jul 2026] DLA-4696-1 imagemagick - security update
 	{CVE-2026-61464 CVE-2026-61465 CVE-2026-61857 CVE-2026-61858 CVE-2026-61859 CVE-2026-61860 CVE-2026-61862 CVE-2026-61863 CVE-2026-61864 CVE-2026-61865 CVE-2026-61866 CVE-2026-61868 CVE-2026-61869 CVE-2026-61870 CVE-2026-61872}
 	[bullseye] - imagemagick 8:6.9.11.60+dfsg-1.3+deb11u16


=====================================
data/dla-needed.txt
=====================================
@@ -747,16 +747,6 @@ spip/bullseye
   NOTE: 20260326: very low popcon (Beuc/front-desk)
   NOTE: 20260422: https://salsa.debian.org/lts-team/lts-updates-tasks/-/work_items/342
 --
-squid (utkarsh)
-  NOTE: 20260614: Added by Front-Desk (rouca)
-  NOTE: 20260720: ...changes staged and testing. Will ping Paride thereafter. (utkarsh)
-  NOTE: 20260720: Git repository:
-  NOTE: 20260720: - https://salsa.debian.org/lts-team/packages/squid/-/commits/debian/bookworm
-  NOTE: 20260720: - https://salsa.debian.org/lts-team/packages/squid/-/commits/debian/bullseye
-  NOTE: 20260720: Workflows:
-  NOTE: 20260720: - https://debusine.debian.net/debian/developers/work-request/930928/
-  NOTE: 20260720: - https://debusine.debian.net/debian/developers/work-request/931550/
---
 starlette (dleidert)
   NOTE: 20260528: Added by Front-Desk (dleidert)
   NOTE: 20260528: follow DSA-6302-1 (dleidert/front-desk)



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ac2ac4467f164c5cf629a9078f74a9e5df1834b6

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/ac2ac4467f164c5cf629a9078f74a9e5df1834b6
You're receiving this email because of your account on salsa.debian.org. Manage all notifications: https://salsa.debian.org/-/profile/notifications | Help: https://salsa.debian.org/help


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20260723/f2ae7675/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list