From cccd5fcd50f8147692398a3af4c2899135e31dfbca964ccf6cbd2810568931e5 Mon Sep 17 00:00:00 2001 From: Adam Majer Date: Wed, 24 Jun 2020 11:46:29 +0000 Subject: [PATCH] * Fixes a potential Denial of Service when processing TLS certificates during HTTPS or SSL-Bump connections (CVE-2020-14059, bsc#1173304) OBS-URL: https://build.opensuse.org/package/show/server:proxy/squid?expand=0&rev=214 --- squid.changes | 2 ++ 1 file changed, 2 insertions(+) diff --git a/squid.changes b/squid.changes index dcdd842..3fd21f0 100644 --- a/squid.changes +++ b/squid.changes @@ -2,6 +2,8 @@ Sun Jun 21 05:28:33 UTC 2020 - Andreas Stieger - squid 4.12: + * Fixes a potential Denial of Service when processing TLS certificates + during HTTPS or SSL-Bump connections (CVE-2020-14059, bsc#1173304) * Regression Fix: Revert to slow search for new SMP shm pages * Fix Negative responses are never cached * HTTP: validate Content-Length value prefix