Alerts This Week
Warning Icon 1 619
Alerts This Week
Warning Icon 1 619

Stay Secure with the Latest Linux Advisories

Filter Icon Refine advisories
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security advisories

We found -7 articles for you...
172

Ubuntu 18.04/16.04 LTS: USN-4446-2 Moderate: Squid Regression Fix

USN-4446-1 introduced a regression in Squid.. =========================================================================Ubuntu Security Notice USN-4446-2 August 27, 2020 squid3 regression ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: USN-4446-1 introduced a regression in Squid. Software Description: - squid3: Web proxy cache server Details: USN-4446-1 fixed vulnerabilities in Squid. The update introduced a regression when using Squid with the icap or ecap protocols. This update fixes the problem. We apologize for the inconvenience. Original advisory details: Jeriko One discovered that Squid incorrectly handled caching certain requests. A remote attacker could possibly use this issue to perform cache-injection attacks or gain access to reverse proxy features such as ESI. (CVE-2019-12520) Jeriko One and Kristoffer Danielsson discovered that Squid incorrectly handled certain URN requests. A remote attacker could possibly use this issue to bypass access checks. (CVE-2019-12523) Jeriko One discovered that Squid incorrectly handled URL decoding. A remote attacker could possibly use this issue to bypass certain rule checks. (CVE-2019-12524) Jeriko One and Kristoffer Danielsson discovered that Squid incorrectly handled input validation. A remote attacker could use this issue to cause Squid to crash, resulting in a denial of service. (CVE-2019-18676) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS: squid 3.5.27-1ubuntu1.8 Ubuntu 16.04 LTS: squid 3.5.12-1ubuntu7.13 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4446-2 https://ubuntu.com/security/notices/USN-4446-1 https://bugs.launchpad.net/ubuntu/+source/squid3/+bug/1890265 Package Information: https://launchpad.net/ubuntu/+source/squid3/3.5.27-1ubuntu1.8 https://launchpad.net/ubuntu/+source/squid3/3.5.12-1ubuntu7.13 . Ubuntu Security Notice USN-4446-2 addresses a regression issue in Squid that impacts several versions, highlighting essential update information for users.. Squid Update, Ubuntu Security, Cache Injection, Regression Fix. . LinuxSecurity.com Team

Calendar 2 Aug 27, 2020 Ubuntu
172

Ubuntu 18.04 LTS Squid: 4446-1 Moderate: Addressing Multiple Issues

Several security issues were fixed in Squid.. =========================================================================Ubuntu Security Notice USN-4446-1 August 03, 2020 squid3 vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 18.04 LTS - Ubuntu 16.04 LTS Summary: Several security issues were fixed in Squid. Software Description: - squid3: Web proxy cache server Details: Jeriko One discovered that Squid incorrectly handled caching certain requests. A remote attacker could possibly use this issue to perform cache-injection attacks or gain access to reverse proxy features such as ESI. (CVE-2019-12520) Jeriko One and Kristoffer Danielsson discovered that Squid incorrectly handled certain URN requests. A remote attacker could possibly use this issue to bypass access checks. (CVE-2019-12523) Jeriko One discovered that Squid incorrectly handled URL decoding. A remote attacker could possibly use this issue to bypass certain rule checks. (CVE-2019-12524) Jeriko One and Kristoffer Danielsson discovered that Squid incorrectly handled input validation. A remote attacker could use this issue to cause Squid to crash, resulting in a denial of service. (CVE-2019-18676) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 18.04 LTS: squid 3.5.27-1ubuntu1.7 Ubuntu 16.04 LTS: squid 3.5.12-1ubuntu7.12 In general, a standard system update will make all the necessary changes. References: https://ubuntu.com/security/notices/USN-4446-1 CVE-2019-12520, CVE-2019-12523, CVE-2019-12524, CVE-2019-18676 Package Information: https://launchpad.net/ubuntu/+source/squid3/3.5.27-1ubuntu1.7 https://launchpad.net/ubuntu/+source/squid3/3.5.12-1ubuntu7.12 . Multiple vulnerabilities resolved in Squid for Ubuntu, targeting accesscontrol evasion and DDoS threats. Upgrade advised.. Ubuntu Squid Security Update Cache Injection Denial of Service. . Severity: Important. LinuxSecurity.com Team

Calendar 2 Aug 03, 2020 Important Ubuntu
News Add Esm H240

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":548,"type":"x","order":1,"pct":78.51,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.3,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.87,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.32,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here