Updated squid packages fix security vulnerabilities
Publication date: 03 Aug 2026Modification date: 03 Aug 2026
Type: security
Affected Mageia releases : 10
CVE: CVE-2026-47729 , CVE-2026-50012
Description
The updated packages fix security vulnerabilities:
Due to a Improper Validation of Syntactic Correctness of Inputbug, Squid
is vulnerable to a Out-of-bounds Read attack against the FTP gateway.
(CVE-2026-47729)
Due to an Improper Input Validation bug, Squid is vulnerable to a
Heap-based Buffer Overflow attack against cache digests.
(CVE-2026-50012)
References
- https://bugs.mageia.org/show_bug.cgi?id=35686
- https://www.openwall.com/lists/oss-security/2026/06/12/1
- https://ubuntu.com/security/notices/USN-8435-1
- https://lists.debian.org/debian-security-announce/2026/msg00271.html
- https://www.cve.org/CVERecord?id=CVE-2026-47729
- https://www.cve.org/CVERecord?id=CVE-2026-50012
SRPMS
10/core
- squid-6.12-3.1.mga10