squid-3.3.8-26.el7

エラータID: AXSA:2015-755:01

Release date: 
Wednesday, November 25, 2015 - 12:18
Subject: 
squid-3.3.8-26.el7
Affected Channels: 
Asianux Server 7 for x86_64
Severity: 
Moderate
Description: 

Squid is a high-performance proxy caching server for Web clients,
supporting FTP, gopher, and HTTP data objects. Unlike traditional
caching software, Squid handles all requests in a single,
non-blocking, I/O-driven process. Squid keeps meta data and especially
hot objects cached in RAM, caches DNS lookups, supports non-blocking
DNS lookups, and implements negative caching of failed requests.

Squid consists of a main server program squid, a Domain Name System
lookup program (dnsserver), a program for retrieving FTP data
(ftpget), and some management and client tools.

Security issues fixed with this release:

CVE-2015-3455
Squid 3.2.x before 3.2.14, 3.3.x before 3.3.14, 3.4.x before 3.4.13,
and 3.5.x before 3.5.4, when configured with client-first SSL-bump,
does not properly validate the domain or hostname fields of X.509
certificates, which allows man-in-the-middle attackers to spoof SSL
servers via a valid certificate.

Fixed bugs:

* Previously, the squid process did not handle file descriptors correctly when receiving Simple Network Management Protocol (SNMP) requests. As a consequence, the process gradually accumulated open file descriptors. This bug has been fixed and squid now handles SNMP requests correctly, closing file descriptors when necessary.
* Under high system load, the squid process sometimes terminated unexpectedly with a segmentation fault during reboot. This update provides better memory handling during reboot, thus fixing this bug.

Solution: 

Update packages.

Additional Info: 

N/A

Download: 

SRPMS
  1. squid-3.3.8-26.el7.src.rpm
    MD5: 449161a499389cf50a437171235e51ec
    SHA-256: d6a82076d6cd1b40a5a7eb3fddb80d4405e359ec9b74b7344509026a1e4993ae
    Size: 2.15 MB

Asianux Server 7 for x86_64
  1. squid-3.3.8-26.el7.x86_64.rpm
    MD5: dde32e6bf98be5451ae0c2a3ef11c10f
    SHA-256: e27491a89a913abb99d2946aed66d2b75cde073ebcdc37f8e2171bac3c99ffcb
    Size: 2.57 MB