Markus Koschany pushed to branch master at Debian Security Tracker / security-tracker
Commits: c1677e09 by Markus Koschany at 2024-03-05T23:23:09+01:00 CVE-2019-18860,squid: bookworm is not affected This issue was adressed in version 4.9, introduced to Debian unstable on 10 Nov 2019. https://github.com/squid-cache/squid/commit/5a90b4ce64c346ba7f317a278ba601091d9de076 @Salvatore, I hope just changing the fixed version does the trick here? - - - - - 1 changed file: - data/CVE/list Changes: ===================================== data/CVE/list ===================================== @@ -311441,7 +311441,7 @@ CVE-2023-49285 (Squid is a caching proxy for the Web supporting HTTP, HTTPS, FTP NOTE: http://www.squid-cache.org/Versions/v6/SQUID-2023_7.patch CVE-2019-18860 (Squid before 4.9, when certain web browsers are used, mishandles HTML ...) {DSA-4732-1 DLA-2278-1} - - squid 6.5-1 (low) + - squid 4.9-1 (low) - squid3 <removed> NOTE: https://github.com/squid-cache/squid/pull/504 NOTE: https://github.com/squid-cache/squid/commit/5cc4b155cee1a4968109737f6eba2ef29d51034d (SQUID_5_0_1) View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c1677e098d73aacd68bef3abdcb68d1f30e4c44b -- View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/c1677e098d73aacd68bef3abdcb68d1f30e4c44b You're receiving this email because of your account on salsa.debian.org.
_______________________________________________ debian-security-tracker-commits mailing list [email protected] https://alioth-lists.debian.net/cgi-bin/mailman/listinfo/debian-security-tracker-commits
