Advisories ยป MGASA-2023-0315

Updated squid packages fix security vulnerabilities

Publication date: 09 Nov 2023
Modification date: 09 Nov 2023
Type: security
Affected Mageia releases : 9
CVE: CVE-2023-46846 , CVE-2023-46847 , CVE-2023-46848

Description

The updated packages fix security vulnerabilities:

Request/Response smuggling in HTTP/1.1 and ICAP. (CVE-2023-46846)

Denial of Service in HTTP Digest Authentication. (CVE-2023-46847)

Denial of Service in FTP. (CVE-2023-46848)
                

References

SRPMS

9/core