Re: [squid-users] Vulnerabilities with squid 4.15

2022-02-12 Thread Matus UHLAR - fantomas
On 10.02.22 19:28, robert k Wild wrote: I have squid running on centos 7.9, I will move to ubuntu 20 04 03 as centos is officially dead to me both centos and ubuntu provide security updates for packages in system, while it's supported. I have compiled from source ie make make install as I'm

Re: [squid-users] Vulnerabilities with squid 4.15

2022-02-12 Thread robert k Wild
nice, i dont have any, thanks Amos i normally dont use parse, i normally use reconfigure and rotate On Sat, 12 Feb 2022 at 13:43, Amos Jeffries wrote: > On 11/02/22 23:04, robert k Wild wrote: > > thanks Amos and Eliezer! > > > > tbh i dont know if im using WCCP with my squid version, sorry, ho

Re: [squid-users] Vulnerabilities with squid 4.15

2022-02-12 Thread Amos Jeffries
On 11/02/22 23:04, robert k Wild wrote: thanks Amos and Eliezer! tbh i dont know if im using WCCP with my squid version, sorry, how do i find that out? If this produces any config lines: squid -k parse 2>&1 | grep wccp Cheers Amos ___ squid-u

Re: [squid-users] Vulnerabilities with squid 4.15

2022-02-12 Thread robert k Wild
OK I'm fine All Squid-4.x up to and including 4.16 built without --disable-wccpv2 and configured with wccp2_router in squid.conf are vulnerable. Thanks Amos for this link On Fri, 11 Feb 2022, 10:09 robert k Wild, wrote: > ok so build my squid 4.17 with this option > > --disable-wccpv2 > > a