Package squid: Information

    Source package: squid
    Version: 4.15-alt1
    Build time:  Sep 17, 2021, 11:39 AM in the task #284978
    Category: System/Servers
    Report package bug
    License: GPLv2
    Summary: The Squid proxy caching server
    Description: 
    Squid is a high-performance proxy caching server for Web clients,
    supporting FTP, gopher, and HTTP data objects. Unlike traditional
    caching software, Squid handles all requests in a single,
    non-blocking, I/O-driven process. Squid keeps meta data and especially
    hot objects cached in RAM, caches DNS lookups, supports non-blocking
    DNS lookups, and implements negative caching of failed requests.

    List of rpms provided by this srpm:
    squid (x86_64, ppc64le, i586, armh, aarch64)
    squid-debuginfo (x86_64, ppc64le, i586, armh, aarch64)
    squid-doc (noarch)
    squid-helpers (x86_64, ppc64le, i586, armh, aarch64)
    squid-helpers-debuginfo (x86_64, ppc64le, i586, armh, aarch64)

    Maintainer: Alexey Shabalin


      1. libsasl2-devel
      2. libecap-devel >= 1.0
      3. libxml2-devel
      4. libkrb5-devel
      5. libexpat-devel
      6. perl-Crypt-OpenSSL-X509
      7. libssl-devel
      8. perl-DBI
      9. libldap-devel
      10. perl-Digest-SHA
      11. perl-Pod-Usage
      12. linuxdoc-tools
      13. perl-URI
      14. libltdl7-devel
      15. samba-client
      16. samba-winbind-clients
      17. libgnutls-devel >= 3.1.5
      18. cppunit-devel
      19. doxygen
      20. libnetfilter_conntrack-devel
      21. libnettle-devel
      22. libsystemd-devel
      23. rpm-build >= 4.0.4-alt10
      24. libcap-devel
      25. libpam-devel
      26. gcc-c++
      27. libdb4-devel

    Last changed


    June 24, 2021 Alexey Shabalin 4.15-alt1
    - 4.15
    - Fixes:
      + CVE-2020-25097 HTTP Request Smuggling.
      + CVE-2021-28651 Denial of Service in URN processing.
      + CVE-2021-28652 Denial of Service issue in Cache Manager.
      + CVE-2021-28662 Denial of Service in HTTP Response Processing.
      + CVE-2021-31806 Improper input validation in HTTP Range header.
      + CVE-2021-31807 Incorrect memory management may lead to DoS.
      + CVE-2021-31808 An integer overflow may lead to a DoS.
      + CVE-2021-33620 Denial of Service in HTTP Response processing.
    - update langpack to 20210511
    Oct. 24, 2020 Alexey Shabalin 4.13-alt1
    Oct. 24, 2020 Alexey Shabalin 4.12-alt1