squid-3.3.8-26.el7
エラータID: AXSA:2015-755:01
Squid is a high-performance proxy caching server for Web clients,
supporting FTP, gopher, and HTTP data objects. Unlike traditional
caching software, Squid handles all requests in a single,
non-blocking, I/O-driven process. Squid keeps meta data and especially
hot objects cached in RAM, caches DNS lookups, supports non-blocking
DNS lookups, and implements negative caching of failed requests.
Squid consists of a main server program squid, a Domain Name System
lookup program (dnsserver), a program for retrieving FTP data
(ftpget), and some management and client tools.
Security issues fixed with this release:
CVE-2015-3455
Squid 3.2.x before 3.2.14, 3.3.x before 3.3.14, 3.4.x before 3.4.13,
and 3.5.x before 3.5.4, when configured with client-first SSL-bump,
does not properly validate the domain or hostname fields of X.509
certificates, which allows man-in-the-middle attackers to spoof SSL
servers via a valid certificate.
Fixed bugs:
* Previously, the squid process did not handle file descriptors correctly when receiving Simple Network Management Protocol (SNMP) requests. As a consequence, the process gradually accumulated open file descriptors. This bug has been fixed and squid now handles SNMP requests correctly, closing file descriptors when necessary.
* Under high system load, the squid process sometimes terminated unexpectedly with a segmentation fault during reboot. This update provides better memory handling during reboot, thus fixing this bug.
Update packages.
Squid 3.2.x before 3.2.14, 3.3.x before 3.3.14, 3.4.x before 3.4.13, and 3.5.x before 3.5.4, when configured with client-first SSL-bump, do not properly validate the domain or hostname fields of X.509 certificates, which allows man-in-the-middle attackers to spoof SSL servers via a valid certificate.
N/A
SRPMS
- squid-3.3.8-26.el7.src.rpm
MD5: 449161a499389cf50a437171235e51ec
SHA-256: d6a82076d6cd1b40a5a7eb3fddb80d4405e359ec9b74b7344509026a1e4993ae
Size: 2.15 MB
Asianux Server 7 for x86_64
- squid-3.3.8-26.el7.x86_64.rpm
MD5: dde32e6bf98be5451ae0c2a3ef11c10f
SHA-256: e27491a89a913abb99d2946aed66d2b75cde073ebcdc37f8e2171bac3c99ffcb
Size: 2.57 MB