СloudLinux Blog

CloudLinux OS 6 ELS: squid and curl packages with the fix for the CVE-2021-28651 and the CVE-2021-22925 gradual rollout completed

Written by Inessa Atmachian | Aug 3, 2021 3:18:18 PM

New updated squid and curl packages with the fix for the CVE-2021-28651 and the CVE-2021-22925 within CloudLinux OS 6 ELS have been rolled out to 100% and are now available for download from our production repository.

Changelog

squid-3.1.23-25.el6.cloudlinux.els

  • Fix memory leak leading to denial of service (CVE-2021-28651)

curl-7.19.7-58.el6.cloudlinux.els.x86_64

  • Fix telnet stack contents disclosure again (CVE-2021-22925)

Update command (squid)

yum update squid*

Update command (curl)

yum update curl*