-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 26 Oct 2025 09:31:13 +0100 Source: squid Binary: squid squid-cgi squid-cgi-dbgsym squid-dbgsym squid-openssl squid-openssl-dbgsym squid-purge squid-purge-dbgsym squidclient squidclient-dbgsym Architecture: amd64 Version: 6.13-2+deb13u1 Distribution: trixie-security Urgency: high Maintainer: amd64 / i386 Build Daemon (x86-ubc-01) Changed-By: Bastien Roucariès Description: squid - Full featured Web Proxy cache (HTTP proxy GnuTLS flavour) squid-cgi - Full featured Web Proxy cache (HTTP proxy) - control CGI squid-openssl - Full featured Web Proxy cache (HTTP proxy OpenSSL flavour) squid-purge - Full featured Web Proxy cache (HTTP proxy) - cache management uti squidclient - Full featured Web Proxy cache (HTTP proxy) - HTTP(S) message util Closes: 1117048 1118341 Changes: squid (6.13-2+deb13u1) trixie-security; urgency=high . * Non Maintainer Upload by LTS team * Fix CVE-2025-62168 (Closes: #1118341) Due to a failure to redact HTTP Authentication credentials Squid is vulnerable to an Information Disclosure attack. * Fix CVE-2025-59362 (Closes: #1117048) Squid mishandles ASN.1 encoding of long SNMP OIDs. Checksums-Sha1: b8e00a544276e429106ab3f48218dd44d6350e05 150128 squid-cgi-dbgsym_6.13-2+deb13u1_amd64.deb 091d576f24feb3d2fc099b60e0dc8977e28dc2db 164072 squid-cgi_6.13-2+deb13u1_amd64.deb 764419cae11e51c070352ae5bbae383f1e8289c9 23669836 squid-dbgsym_6.13-2+deb13u1_amd64.deb 0e702a64a305f97a54b5b385e285a416d5bc9aac 25462644 squid-openssl-dbgsym_6.13-2+deb13u1_amd64.deb f0669011d73a941ac83bc9dde8c4731d55fb4f61 2677216 squid-openssl_6.13-2+deb13u1_amd64.deb 78d74cb24c39b54312f0283a1de50addc9860577 88600 squid-purge-dbgsym_6.13-2+deb13u1_amd64.deb cbda6a5cf2d8f5c6267b67dfbc536e7dd18e1d2c 156276 squid-purge_6.13-2+deb13u1_amd64.deb c7d288cb1c8b56e43ea334645a7d19214b903254 10078 squid_6.13-2+deb13u1_amd64-buildd.buildinfo f636eb5de03f2c9b5b9e098bfdffd7c5325ae6de 2793720 squid_6.13-2+deb13u1_amd64.deb 5770f63b96c7b8c151352d51d73a5334d883e5f5 194624 squidclient-dbgsym_6.13-2+deb13u1_amd64.deb f01fd3ccc2226388719ff185322d99c132d9fb9f 167328 squidclient_6.13-2+deb13u1_amd64.deb Checksums-Sha256: c13e8a1d063a7f8f07f8ab539b3f791721cf967a0ce681a80d3fbfa9c05b83b7 150128 squid-cgi-dbgsym_6.13-2+deb13u1_amd64.deb 30b63c68ee2b78eb70e6eeb8c46a9f27391b82e848541f50d51f7e37d69b719e 164072 squid-cgi_6.13-2+deb13u1_amd64.deb e3f60fd9fd3fd5ffc8847a4def5c3dd72a08109cb11a84cc8d050305669e9847 23669836 squid-dbgsym_6.13-2+deb13u1_amd64.deb f176fb101cc7517d3a8bb7a82c6b3ae3ac3bd99d44356ab9dbfdfda73a378eb5 25462644 squid-openssl-dbgsym_6.13-2+deb13u1_amd64.deb c18e9faf047a33a978782996b29a853f1b623d54cd074193aa64d6ad0997c8b6 2677216 squid-openssl_6.13-2+deb13u1_amd64.deb 5b990681c10b1a2900d2ffa42ec714c6612f124d6f4c6ea4fbec28b49f4145c4 88600 squid-purge-dbgsym_6.13-2+deb13u1_amd64.deb 6f63f43c6ff5aaa245eaab43f2b7452d0068ba0319391c7bff089b61e77b94ea 156276 squid-purge_6.13-2+deb13u1_amd64.deb a2f746289981d70e66945afd9e8f214a0af387e7ccde7ffa7cd273eeeb18d6fc 10078 squid_6.13-2+deb13u1_amd64-buildd.buildinfo e8c91c1ddeb4e9440dcfcba1d18cbe001376ede217587829a61f088ac0ece53b 2793720 squid_6.13-2+deb13u1_amd64.deb c56466e458aba97156f74189a5653748eed79269d65157de420e07181cf0a0a3 194624 squidclient-dbgsym_6.13-2+deb13u1_amd64.deb 35b67fd0d12d2fed6fbd3fd2b11df08eb2f9defe3968a66a387dd4e7d19f923b 167328 squidclient_6.13-2+deb13u1_amd64.deb Files: 029221a31a620ac36217e2c987e0b367 150128 debug optional squid-cgi-dbgsym_6.13-2+deb13u1_amd64.deb 280e156948410bac5923c8fd166561a3 164072 web optional squid-cgi_6.13-2+deb13u1_amd64.deb f56fe9a6194401b6e785169c6571973d 23669836 debug optional squid-dbgsym_6.13-2+deb13u1_amd64.deb 20f5296dbbd56caa973ea309f357d910 25462644 debug optional squid-openssl-dbgsym_6.13-2+deb13u1_amd64.deb a6badfaeb7e81d59f863b0ea41e4664a 2677216 web optional squid-openssl_6.13-2+deb13u1_amd64.deb 4cdaae2484049667ed3fdaeb3e104314 88600 debug optional squid-purge-dbgsym_6.13-2+deb13u1_amd64.deb fce0f0cccadbcf5886fe197894a339d6 156276 web optional squid-purge_6.13-2+deb13u1_amd64.deb c8f4690f3165932155397a019cb046fa 10078 web optional squid_6.13-2+deb13u1_amd64-buildd.buildinfo c44a72b8ea7c8de050ae169630a7edd1 2793720 web optional squid_6.13-2+deb13u1_amd64.deb 02f7b9e977151719dc144a86982228d9 194624 debug optional squidclient-dbgsym_6.13-2+deb13u1_amd64.deb 41f015ebbf5b1c338de96bad49c85099 167328 web optional squidclient_6.13-2+deb13u1_amd64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEnw0rdzqckKx6dwRTEbCLukZn24oFAmkB/jwACgkQEbCLukZn 24r/8xAAi0x/twqwvzxXzw4vRQgL6cayqbHombzntRxwSbwdS/e3h/PJsFXgrrpg PjZQTkA93UZtwSF9uTNAYpKZmUk+TXiWyghYfYsqw6Ay/D0X6p0qkOu+qEC+fy8U aDqQOEK2fqPHWV9vu+aosALRqII1oi9aMNfrOxAOShWauiP9OsneNg4JkkER50Pb 5FtuqhZ4e3jfienegKAx1MjqutT8h+vU8+GqlrtuDrPvjBdqeClh+cp4oOnVF/o5 jGQEciyEdpVKaZ02Bb2DNYC2iV9RoMxi6MP9UIYdar0AboKHmMaxjF+AnhVNfaCt N5culGZy/uLfNWNpcLgeK+bsPD/aVNyMiWPUfAx93e9F6A4W+zplCP2KtznZnOCk 4l525RkC7QZvhvJNGh9reFnonKQEJ71BMp2F59WJvpfNIrduXJvDwOnWo9TOA110 F2Dfezeb72W+LJWlULBAVcIf4hjCvaMoIjTLZscZwvEBvxwiV5tCbJESr8ZqyTEj J4OeUghR+LYTVaMrlYHHAvpASZpFph4w2unARAoNm46fQnIcXUULu/zkAy3iSa+b ZHInYuQYdnnnu5RpXl/g3ujnBPjOWVaCSfOLiwtLd+mLiERpK+yd8OY/dzCOor1G kyLMJruosaZwP4RHfldoHF8Wg8RTuqjtRmbvJuNSq+Eq1gm3Xqo= =pzG+ -----END PGP SIGNATURE-----