SHA256
1
0
forked from pool/squid

Commit Graph

  • 6706396e9d Accepting request 816284 from server:proxy Dominique Leuenberger 2020-06-22 15:46:11 +00:00
  • 3b3d2c2e9a Accepting request 816284 from server:proxy Dominique Leuenberger 2020-06-22 15:46:11 +00:00
  • a66e3eb253 Accepting request 816219 from home:AndreasStieger:branches:server:proxy Martin Pluskal 2020-06-22 08:43:44 +00:00
  • 90caa15be3 Accepting request 816219 from home:AndreasStieger:branches:server:proxy Martin Pluskal 2020-06-22 08:43:44 +00:00
  • 99b8229348 Accepting request 796564 from server:proxy Dominique Leuenberger 2020-04-23 16:40:20 +00:00
  • a8c49f5f4f Accepting request 796564 from server:proxy Dominique Leuenberger 2020-04-23 16:40:20 +00:00
  • f2a67a095a - Update to squid 4.11: * Fix incorrect buffer handling that can result in cache poisoning, remote execution, and denial of service attacks when processing ESI responses (CVE-2019-12519, CVE-2019-12521, bsc#1169659) * Fixes possible information disclosure when translating FTP server listings into HTTP responses. (CVE-2019-12528, bsc#1162689) * Fixes possible denial of service caused by incorrect buffer management ext_lm_group_acl when processing NTLM Authentication credentials. (CVE-2020-8517, bsc#1162691) * Fixes a potential remote execution vulnerability when using HTTP Digest Authentication (CVE-2020-11945, bsc#1170313) * Fixes problem when reconfigure killed Coordinator in SMP+ufs configurations (#556) Adam Majer 2020-04-23 13:47:01 +00:00
  • 8b38ddcc65 - Update to squid 4.11: * Fix incorrect buffer handling that can result in cache poisoning, remote execution, and denial of service attacks when processing ESI responses (CVE-2019-12519, CVE-2019-12521, bsc#1169659) * Fixes possible information disclosure when translating FTP server listings into HTTP responses. (CVE-2019-12528, bsc#1162689) * Fixes possible denial of service caused by incorrect buffer management ext_lm_group_acl when processing NTLM Authentication credentials. (CVE-2020-8517, bsc#1162691) * Fixes a potential remote execution vulnerability when using HTTP Digest Authentication (CVE-2020-11945, bsc#1170313) * Fixes problem when reconfigure killed Coordinator in SMP+ufs configurations (#556) Adam Majer 2020-04-23 13:47:01 +00:00
  • 1aab4a210f Accepting request 795800 from server:proxy Dominique Leuenberger 2020-04-21 11:11:43 +00:00
  • 9f839c09d5 Accepting request 795800 from server:proxy Dominique Leuenberger 2020-04-21 11:11:43 +00:00
  • c03ffa6149 Accepting request 795761 from home:kukuk:branches:server:proxy Adam Majer 2020-04-20 11:30:46 +00:00
  • 1a19c2cdda Accepting request 795761 from home:kukuk:branches:server:proxy Adam Majer 2020-04-20 11:30:46 +00:00
  • 2b8e919195 Accepting request 792007 from server:proxy Dominique Leuenberger 2020-04-08 17:57:10 +00:00
  • 1a693817c3 Accepting request 792007 from server:proxy Dominique Leuenberger 2020-04-08 17:57:10 +00:00
  • c954d4b5a2 Add missing CVE number to upstream release Adam Majer 2020-03-31 14:28:53 +00:00
  • 7c91a28b19 Add missing CVE number to upstream release Adam Majer 2020-03-31 14:28:53 +00:00
  • 74ca16958f Accepting request 776229 from server:proxy Dominique Leuenberger 2020-02-19 11:43:04 +00:00
  • e641f7a8bc Accepting request 776229 from server:proxy Dominique Leuenberger 2020-02-19 11:43:04 +00:00
  • f0be9bfdb2 Accepting request 776203 from home:kukuk:container Martin Pluskal 2020-02-19 08:58:35 +00:00
  • 53be975248 Accepting request 776203 from home:kukuk:container Martin Pluskal 2020-02-19 08:58:35 +00:00
  • a1eb490077 Accepting request 770216 from server:proxy Dominique Leuenberger 2020-02-05 18:44:27 +00:00
  • 9b1651858a Accepting request 770216 from server:proxy Dominique Leuenberger 2020-02-05 18:44:27 +00:00
  • ef91100b26 - Update to squid 4.10: * fixes a security issue allowing a remote client ability to cause use a buffer overflow when squid is acting as reverse-proxy. (CVE-2020-8449, CVE-2020-8450, bsc#1162687) * fixes a security issue allowing for information disclosure in FTP gateway (CVE-2019-12528, bsc#1162689) * fixes a security issue in ext_lm_group_acl when processing NTLM Authentication credentials. (CVE-2020-8517, bsc#1162691) * improve cache handling with chunked responses Adam Majer 2020-02-05 10:09:46 +00:00
  • 4575171bf0 - Update to squid 4.10: * fixes a security issue allowing a remote client ability to cause use a buffer overflow when squid is acting as reverse-proxy. (CVE-2020-8449, CVE-2020-8450, bsc#1162687) * fixes a security issue allowing for information disclosure in FTP gateway (CVE-2019-12528, bsc#1162689) * fixes a security issue in ext_lm_group_acl when processing NTLM Authentication credentials. (CVE-2020-8517, bsc#1162691) * improve cache handling with chunked responses Adam Majer 2020-02-05 10:09:46 +00:00
  • 2edca9d884 Accepting request 746661 from server:proxy Dominique Leuenberger 2019-11-09 22:40:27 +00:00
  • 5dc6931f93 Accepting request 746661 from server:proxy Dominique Leuenberger 2019-11-09 22:40:27 +00:00
  • d1eebdb6c7 - Update to squid 4.9: * fixes multiple Cross-Site Scripting issues in cachemgr.cgi (CVE-2019-13345, bsc#1140738) * fixes heap overflow in URN processing (CVE-2019-12526, bsc#1156326) * fixes multiple issues in URI processing (CVE-2019-12523, CVE-2019-18676, bsc#1156329) * fixes Cross-Site Request Forgery in HTTP Request processing (CVE-2019-18677, bsc#1156328) * fixes HTTP Request Splitting in HTTP message processing (CVE-2019-18678, bsc#1156323) * fixes information disclosure in HTTP Digest Authentication (CVE-2019-18679, bsc#1156324) * lower cache_peer hostname - this showed up as DNS failures if peer name was configured with any upper case characters * TLS: Multiple SSL-Bump fixes * TLS: Fix expiration of self-signed generated certs to be 3 years * TLS: Fix on_unsupported_protocol tunnel action * Fix several rock cache_dir corruption issues - fix_configuration_error.patch: upstreamed - old_nettle_compat.patch: refreshed Adam Majer 2019-11-08 16:23:28 +00:00
  • b862c898ec - Update to squid 4.9: * fixes multiple Cross-Site Scripting issues in cachemgr.cgi (CVE-2019-13345, bsc#1140738) * fixes heap overflow in URN processing (CVE-2019-12526, bsc#1156326) * fixes multiple issues in URI processing (CVE-2019-12523, CVE-2019-18676, bsc#1156329) * fixes Cross-Site Request Forgery in HTTP Request processing (CVE-2019-18677, bsc#1156328) * fixes HTTP Request Splitting in HTTP message processing (CVE-2019-18678, bsc#1156323) * fixes information disclosure in HTTP Digest Authentication (CVE-2019-18679, bsc#1156324) * lower cache_peer hostname - this showed up as DNS failures if peer name was configured with any upper case characters * TLS: Multiple SSL-Bump fixes * TLS: Fix expiration of self-signed generated certs to be 3 years * TLS: Fix on_unsupported_protocol tunnel action * Fix several rock cache_dir corruption issues - fix_configuration_error.patch: upstreamed - old_nettle_compat.patch: refreshed Adam Majer 2019-11-08 16:23:28 +00:00
  • ab38174316 Accepting request 721533 from server:proxy Dominique Leuenberger 2019-08-08 12:23:33 +00:00
  • ad1d02283e Accepting request 721533 from server:proxy Dominique Leuenberger 2019-08-08 12:23:33 +00:00
  • 676ef4366f Fix compilation with old nettle Adam Majer 2019-08-07 08:32:10 +00:00
  • 5bf83e3a20 Fix compilation with old nettle Adam Majer 2019-08-07 08:32:10 +00:00
  • fe9c5eece0 OBS-URL: https://build.opensuse.org/package/show/server:proxy/squid?expand=0&rev=197 Adam Majer 2019-08-06 13:31:27 +00:00
  • cfbd7154aa OBS-URL: https://build.opensuse.org/package/show/server:proxy/squid?expand=0&rev=197 Adam Majer 2019-08-06 13:31:27 +00:00
  • c906271f60 - fix_configuration_error.patch: Fix compilation with -Wreturn-type - old_nettle_compat.patch: Update to actually use older version Adam Majer 2019-08-06 13:19:25 +00:00
  • 51b5f199a0 - fix_configuration_error.patch: Fix compilation with -Wreturn-type - old_nettle_compat.patch: Update to actually use older version Adam Majer 2019-08-06 13:19:25 +00:00
  • 6bf128763e Accepting request 718583 from server:proxy Dominique Leuenberger 2019-07-26 10:42:20 +00:00
  • a7a57d9637 Accepting request 718583 from server:proxy Dominique Leuenberger 2019-07-26 10:42:20 +00:00
  • 67f5562c75 Fix patch for current patch Adam Majer 2019-07-18 14:27:06 +00:00
  • e1d5654187 Fix patch for current patch Adam Majer 2019-07-18 14:27:06 +00:00
  • 58c9e10e29 - - old_nettle_compat.patch: Fix compatibility with nettle in SLE-12 Adam Majer 2019-07-18 14:14:00 +00:00
  • cccd13179c - - old_nettle_compat.patch: Fix compatibility with nettle in SLE-12 Adam Majer 2019-07-18 14:14:00 +00:00
  • e01ce18ab3 Accepting request 715745 from server:proxy Dominique Leuenberger 2019-07-18 13:20:23 +00:00
  • a8a96222c4 Accepting request 715745 from server:proxy Dominique Leuenberger 2019-07-18 13:20:23 +00:00
  • 2503a0e473 - use unbundled version of libnettle Adam Majer 2019-07-16 15:33:12 +00:00
  • 1b4a15b127 - use unbundled version of libnettle Adam Majer 2019-07-16 15:33:12 +00:00
  • caceccefae OBS-URL: https://build.opensuse.org/package/show/server:proxy/squid?expand=0&rev=190 Adam Majer 2019-07-16 07:58:08 +00:00
  • fef008683e OBS-URL: https://build.opensuse.org/package/show/server:proxy/squid?expand=0&rev=190 Adam Majer 2019-07-16 07:58:08 +00:00
  • 4ca19a9152 - disable LTO to as a workaround to tests failing Adam Majer 2019-07-16 07:57:43 +00:00
  • 49783ccec7 - disable LTO to as a workaround to tests failing Adam Majer 2019-07-16 07:57:43 +00:00
  • 89923060bf - Update to squid 4.8: + Ignore ECONNABORTED in accept(2) + RFC 7230 forbids generation of userinfo subcomponent of https URL + cachemgr.cgi: unallocated memory access resulting in a potential denial of service. (bsc#1141442, CVE-2019-12854) + terminating c-strings beyond BASE64_DECODE_LENGTH + Replace uudecode with libnettle base64 decoder fixing a denial of service vulnerability (bsc#1141329, CVE-2019-12529) + fix to_localhost does not include :: + Fix GCC-9 build issues + Fix Digest auth parameter parsing preventing a potential denial of service (bsc#1141332, CVE-2019-12525) + Update HttpHeader::getAuth to SBuf which prevents a potential heap overflowing allowing a possible remote code execution attack when processing HTTP Authentication credentials (bsc#1141330, CVE-2019-12527) + Add the NO_TLSv1_3 option to available tls-options values + Fix handling of tiny invalid responses + Fix Memory leak when http_reply_access uses external_acl + Fix Multiple XSS issues in cachemgr.cgi (bsc#1140738, CVE-2019-13345) Adam Majer 2019-07-15 15:22:32 +00:00
  • 1f7d2548ca - Update to squid 4.8: + Ignore ECONNABORTED in accept(2) + RFC 7230 forbids generation of userinfo subcomponent of https URL + cachemgr.cgi: unallocated memory access resulting in a potential denial of service. (bsc#1141442, CVE-2019-12854) + terminating c-strings beyond BASE64_DECODE_LENGTH + Replace uudecode with libnettle base64 decoder fixing a denial of service vulnerability (bsc#1141329, CVE-2019-12529) + fix to_localhost does not include :: + Fix GCC-9 build issues + Fix Digest auth parameter parsing preventing a potential denial of service (bsc#1141332, CVE-2019-12525) + Update HttpHeader::getAuth to SBuf which prevents a potential heap overflowing allowing a possible remote code execution attack when processing HTTP Authentication credentials (bsc#1141330, CVE-2019-12527) + Add the NO_TLSv1_3 option to available tls-options values + Fix handling of tiny invalid responses + Fix Memory leak when http_reply_access uses external_acl + Fix Multiple XSS issues in cachemgr.cgi (bsc#1140738, CVE-2019-13345) Adam Majer 2019-07-15 15:22:32 +00:00
  • 395b303055 Accepting request 702817 from server:proxy Dominique Leuenberger 2019-05-15 10:33:54 +00:00
  • 0b6b75ecb3 Accepting request 702817 from server:proxy Dominique Leuenberger 2019-05-15 10:33:54 +00:00
  • 25281c2622 Few more missing bug numbers from 3.x line Adam Majer 2019-05-14 11:29:55 +00:00
  • 777c5c3d20 Few more missing bug numbers from 3.x line Adam Majer 2019-05-14 11:29:55 +00:00
  • 053c993797 Accepting request 701549 from server:proxy Dominique Leuenberger 2019-05-08 13:17:46 +00:00
  • a7bfb7108b Accepting request 701549 from server:proxy Dominique Leuenberger 2019-05-08 13:17:46 +00:00
  • b8da84ad42 - Update to squid 4.7: (jsc#SLE-5648) + Fix stack-based buffer-overflow when parsing SNMP messages + Fixed squidclient authentication + Add support for buffer-size= to UDP logging + Trust intermediate CAs from trusted stores + Bug #4928: Cannot convert non-IPv4 to IPv4 + Bug #4796: comm.cc !isOpen(conn->fd) assertion when rotating logs + Bug #4823: assertion failed: "lowestOffset () <= target_offset" (bsc#1133089) + Bug #4942: --with-filedescriptors does not do anything Adam Majer 2019-05-08 10:45:58 +00:00
  • f7bbf15a1d - Update to squid 4.7: (jsc#SLE-5648) + Fix stack-based buffer-overflow when parsing SNMP messages + Fixed squidclient authentication + Add support for buffer-size= to UDP logging + Trust intermediate CAs from trusted stores + Bug #4928: Cannot convert non-IPv4 to IPv4 + Bug #4796: comm.cc !isOpen(conn->fd) assertion when rotating logs + Bug #4823: assertion failed: "lowestOffset () <= target_offset" (bsc#1133089) + Bug #4942: --with-filedescriptors does not do anything Adam Majer 2019-05-08 10:45:58 +00:00
  • 34c8233544 - Syncronize bug and CVE references between 3.x and 4.x squid changelog Adam Majer 2019-02-26 16:24:46 +00:00
  • d65c3be188 - Syncronize bug and CVE references between 3.x and 4.x squid changelog Adam Majer 2019-02-26 16:24:46 +00:00
  • 8ea53c8a1e Accepting request 678651 from server:proxy Stephan Kulow 2019-02-25 16:57:01 +00:00
  • 4bc6b0168e Accepting request 678651 from server:proxy Stephan Kulow 2019-02-25 16:57:01 +00:00
  • 1e7dc054ff Accepting request 678364 from home:seanlew:branches:server:proxy Martin Pluskal 2019-02-25 07:58:31 +00:00
  • 41a28e8b22 Accepting request 678364 from home:seanlew:branches:server:proxy Martin Pluskal 2019-02-25 07:58:31 +00:00
  • 3101c6a8a6 Accepting request 677001 from server:proxy Yuchen Lin 2019-02-19 11:00:50 +00:00
  • 142b1d34e9 Accepting request 677001 from server:proxy Yuchen Lin 2019-02-19 11:00:50 +00:00
  • e41a4c2ba6 - Revert whitespace deletions of .changes as it makes diffs a pain. Adam Majer 2019-02-18 10:04:44 +00:00
  • 0dc8c8b0d5 - Revert whitespace deletions of .changes as it makes diffs a pain. Adam Majer 2019-02-18 10:04:44 +00:00
  • d8b1c58cb2 Accepting request 676612 from home:jengelh:branches:server:proxy Martin Pluskal 2019-02-18 07:45:40 +00:00
  • 8ed27ce66b Accepting request 676612 from home:jengelh:branches:server:proxy Martin Pluskal 2019-02-18 07:45:40 +00:00
  • 0bd659cf19 Accepting request 662383 from server:proxy Dominique Leuenberger 2019-01-03 17:08:06 +00:00
  • 5f3fd69e41 Accepting request 662383 from server:proxy Dominique Leuenberger 2019-01-03 17:08:06 +00:00
  • 5bdd2d2c07 OBS-URL: https://build.opensuse.org/package/show/server:proxy/squid?expand=0&rev=176 Martin Pluskal 2019-01-02 08:44:24 +00:00
  • b292dfd12d OBS-URL: https://build.opensuse.org/package/show/server:proxy/squid?expand=0&rev=176 Martin Pluskal 2019-01-02 08:44:24 +00:00
  • b4f4639593 Accepting request 662363 from home:seanlew:branches:server:proxy Martin Pluskal 2019-01-02 08:30:55 +00:00
  • f3e0551c1d Accepting request 662363 from home:seanlew:branches:server:proxy Martin Pluskal 2019-01-02 08:30:55 +00:00
  • 22a0eead38 Accepting request 653729 from server:proxy Dominique Leuenberger 2018-12-04 19:57:39 +00:00
  • 2386973e81 Accepting request 653729 from server:proxy Dominique Leuenberger 2018-12-04 19:57:39 +00:00
  • 3d0f6b759d - Fix permissions of installed file to tmpfilesdir Adam Majer 2018-11-09 13:15:01 +00:00
  • a2705b2937 - Fix permissions of installed file to tmpfilesdir Adam Majer 2018-11-09 13:15:01 +00:00
  • 8e3db99a86 Accepting request 645296 from server:proxy Dominique Leuenberger 2018-10-31 12:14:28 +00:00
  • 8da3d2bbef Accepting request 645296 from server:proxy Dominique Leuenberger 2018-10-31 12:14:28 +00:00
  • b462c2211b Accepting request 645255 from home:adamm:branches:server:proxy Adam Majer 2018-10-29 14:48:28 +00:00
  • 172a09005a Accepting request 645255 from home:adamm:branches:server:proxy Adam Majer 2018-10-29 14:48:28 +00:00
  • bab4a38e71 Accepting request 643975 from server:proxy Dominique Leuenberger 2018-10-23 18:42:13 +00:00
  • c2bb72d901 Accepting request 643975 from server:proxy Dominique Leuenberger 2018-10-23 18:42:13 +00:00
  • 454241824d Accepting request 643973 from home:adamm:branches:server:proxy Martin Pluskal 2018-10-23 13:55:38 +00:00
  • b13fb97e7d Accepting request 643973 from home:adamm:branches:server:proxy Martin Pluskal 2018-10-23 13:55:38 +00:00
  • 62bbfbd650 Accepting request 639903 from server:proxy Dominique Leuenberger 2018-10-04 17:02:24 +00:00
  • 9e74ac36eb Accepting request 639903 from server:proxy Dominique Leuenberger 2018-10-04 17:02:24 +00:00
  • 6a01ecb9c5 Accepting request 639902 from home:pluskalm:branches:server:proxy Martin Pluskal 2018-10-04 08:40:01 +00:00
  • 5f431c6df6 Accepting request 639902 from home:pluskalm:branches:server:proxy Martin Pluskal 2018-10-04 08:40:01 +00:00
  • a91edd2d60 - Correct changelog * Bug 4885: Excessive memory usage when running out of descriptors * Bug 4877: Add missing text about external_acl_type %DATA changes * Bug 4875 pt1: GCC-8 compile errors with -O3 optimization * Bug 4716: Blank lines in cachemgr.conf are not skipped * Bug 4691: balance_on_multiple_ip config option docs * basic_pop3_auth: fix startup errors * langpack: Add missing dialect aliases * Fix range_offset_limit debugging * Fix icc build errors * Update systemd dependencies in squid.service Martin Pluskal 2018-10-04 07:37:10 +00:00
  • 71b88f256b - Correct changelog * Bug 4885: Excessive memory usage when running out of descriptors * Bug 4877: Add missing text about external_acl_type %DATA changes * Bug 4875 pt1: GCC-8 compile errors with -O3 optimization * Bug 4716: Blank lines in cachemgr.conf are not skipped * Bug 4691: balance_on_multiple_ip config option docs * basic_pop3_auth: fix startup errors * langpack: Add missing dialect aliases * Fix range_offset_limit debugging * Fix icc build errors * Update systemd dependencies in squid.service Martin Pluskal 2018-10-04 07:37:10 +00:00
  • a4150cd2cc Accepting request 639660 from home:seanlew:branches:server:proxy Ondřej Súkup 2018-10-03 08:12:03 +00:00
  • c2c03bd33a Accepting request 639660 from home:seanlew:branches:server:proxy Ondřej Súkup 2018-10-03 08:12:03 +00:00
  • 91824d7181 Accepting request 628977 from server:proxy Dominique Leuenberger 2018-08-15 08:36:34 +00:00
  • bf6256c979 Accepting request 628977 from server:proxy Dominique Leuenberger 2018-08-15 08:36:34 +00:00