The regression fix has now been published:
https://ubuntu.com/security/notices/USN-6728-3
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2060880
Title:
squid crashes after update to 4.10-1ubuntu1.10
Thanks for testing it, it's much appreciated!
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2060880
Title:
squid crashes after update to 4.10-1ubuntu1.10
To manage notifications about this bug go t
Just tried it over the week-end, no crashes detected. Works fine here,
thanks for your work!
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2060880
Title:
squid crashes after update to 4.10-1ubuntu1.
I have located the issue and have prepared an updated package that will
reintroduce the fixes for CVE-2023-5824. I have uploaded the updated
package to the security team PPA here:
https://launchpad.net/~ubuntu-security-
proposed/+archive/ubuntu/ppa/+packages
Once it has finished building, could y
https://ubuntu.com/security/notices/USN-6728-2
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2060880
Title:
squid crashes after update to 4.10-1ubuntu1.10
To manage notifications about this bug go
Thanks for testing everyone, and thanks for the configuration details. I
will attempt to reproduce this issue so that I can figure out what
exactly caused the regression so that we can get CVE-2023-5824 fixed
again soon.
--
You received this bug notification because you are a member of Ubuntu
Bug
This bug was fixed in the package squid - 4.10-1ubuntu1.11
---
squid (4.10-1ubuntu1.11) focal-security; urgency=medium
* SECURITY REGRESSION: crashing issue (LP: #2060880)
- debian/patches/CVE-2023-5824-*.patch: disable patches until the
cause of the crashes has been locat
Regarding #3 here is the very simple config we use in
/etc/squid/conf.d/local. The rest is just the default.
acl localnet src 128.X.0.0/15
acl localnet src 2001:X:X::/48
acl SSL_ports port 8443
acl SSL_ports port 8128
acl SSL_ports port 8090
http_access deny to_localhost
cache_dir aufs /srv/squi
We also experienced the issue (it was readily reproducible in our case),
and the proposed 4.10-1ubuntu1.11 package appears to have resolved it.
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2060880
Ti
Just installed the packages from security-proposed, the work fine on our
configuration. Same workload triggering the crashes (10 clients doing
apt-get update at the same time through the proxy) works fine as it
always did before.
--
You received this bug notification because you are a member of U
Testing the new packages now, and have not yet had any segfaults,
whereas the 4.10-1ubuntu1.10 started logging faults with a couple of
minutes of starting and very regularly (sub-minute) after that.
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed
** Information type changed from Public to Public Security
** Changed in: squid (Ubuntu)
Assignee: (unassigned) => Marc Deslauriers (mdeslaur)
** Changed in: squid (Ubuntu)
Importance: Undecided => Critical
--
You received this bug notification because you are a member of Ubuntu
Bugs, w
I have prepared an update with the patches for CVE-2023-5824 backed out
as they were extensive and are the most likely cause of this regression.
I have uploaded it to the security team PPA here:
https://launchpad.net/~ubuntu-security-
proposed/+archive/ubuntu/ppa/+packages
Once the package has fi
Thanks for reporting this issue. What configuration is this squid server
used in? I would like to reproduce the issue, but I need more details to
set up a similar environment.
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bug
Status changed to 'Confirmed' because the bug affects multiple users.
** Changed in: squid (Ubuntu)
Status: New => Confirmed
--
You received this bug notification because you are a member of Ubuntu
Bugs, which is subscribed to Ubuntu.
https://bugs.launchpad.net/bugs/2060880
Title:
squi
Fruther log messages from dmesg:
[ 1541.601143] traps: squid[6442] general protection fault ip:556e32429691
sp:7fffc8cdd2f0 error:0 in squid[556e3239e000+455000]
[ 1546.316442] squid[7332]: segfault at 66170483 ip 55c000624691 sp
7ffda1b40ca0 error 4 in squid[55c000599000+455000]
[ 1546.
16 matches
Mail list logo