Squid is an open source caching proxy for the Web supporting HTTP, HTTPS, FTP, and more. Due to Input Validation, Premature Release of Resource During Expected Lifetime, and Missing Release of Resource after Effective Lifetime bugs, Squid is vulnerable to Denial of Service attacks by a trusted server against all clients using the proxy. This bug is fixed in the default build configuration of Squid version 6.10.
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.2 Advanced Update Support Via RHSA-2024:9624 https://access.redhat.com/errata/RHSA-2024:9624
This issue has been addressed in the following products: Red Hat Enterprise Linux 9 Via RHSA-2024:9625 https://access.redhat.com/errata/RHSA-2024:9625
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2024:9644 https://access.redhat.com/errata/RHSA-2024:9644
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.2 Extended Update Support Via RHSA-2024:9677 https://access.redhat.com/errata/RHSA-2024:9677
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.4 Extended Update Support Via RHSA-2024:9678 https://access.redhat.com/errata/RHSA-2024:9678
This issue has been addressed in the following products: Red Hat Enterprise Linux 9.0 Update Services for SAP Solutions Via RHSA-2024:9729 https://access.redhat.com/errata/RHSA-2024:9729
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Extended Lifecycle Support Via RHSA-2024:9738 https://access.redhat.com/errata/RHSA-2024:9738
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.6 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.6 Update Services for SAP Solutions Red Hat Enterprise Linux 8.6 Telecommunications Update Service Via RHSA-2024:9814 https://access.redhat.com/errata/RHSA-2024:9814
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.4 Advanced Mission Critical Update Support Red Hat Enterprise Linux 8.4 Update Services for SAP Solutions Red Hat Enterprise Linux 8.4 Telecommunications Update Service Via RHSA-2024:9815 https://access.redhat.com/errata/RHSA-2024:9815
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.8 Extended Update Support Via RHSA-2024:9813 https://access.redhat.com/errata/RHSA-2024:9813