-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 26 Oct 2025 09:31:13 +0100 Source: squid Binary: squid squid-cgi squid-cgi-dbgsym squid-dbgsym squid-openssl squid-openssl-dbgsym squid-purge squid-purge-dbgsym squidclient squidclient-dbgsym Architecture: arm64 Version: 6.13-2+deb13u1 Distribution: trixie-security Urgency: high Maintainer: arm Build Daemon (arm-conova-04) Changed-By: Bastien Roucariès Description: squid - Full featured Web Proxy cache (HTTP proxy GnuTLS flavour) squid-cgi - Full featured Web Proxy cache (HTTP proxy) - control CGI squid-openssl - Full featured Web Proxy cache (HTTP proxy OpenSSL flavour) squid-purge - Full featured Web Proxy cache (HTTP proxy) - cache management uti squidclient - Full featured Web Proxy cache (HTTP proxy) - HTTP(S) message util Closes: 1117048 1118341 Changes: squid (6.13-2+deb13u1) trixie-security; urgency=high . * Non Maintainer Upload by LTS team * Fix CVE-2025-62168 (Closes: #1118341) Due to a failure to redact HTTP Authentication credentials Squid is vulnerable to an Information Disclosure attack. * Fix CVE-2025-59362 (Closes: #1117048) Squid mishandles ASN.1 encoding of long SNMP OIDs. Checksums-Sha1: e95e2c3ce8625b4f32cecbbeb2816fd70ccdea42 148576 squid-cgi-dbgsym_6.13-2+deb13u1_arm64.deb 639f57a7ba0e5c7d1bbf673cdde2949632ab4361 161908 squid-cgi_6.13-2+deb13u1_arm64.deb 57dd1b2b69dd716070405d3fe06dd05492ab6ce5 23143624 squid-dbgsym_6.13-2+deb13u1_arm64.deb 199f4b54ff8fec21e79f785554a862d96768e035 24870448 squid-openssl-dbgsym_6.13-2+deb13u1_arm64.deb bfc5293b11b4bedd0547655b76cac0f8c5ed4a87 2369016 squid-openssl_6.13-2+deb13u1_arm64.deb a357e0362aa677809fd95c34274d04d3154ffee0 88836 squid-purge-dbgsym_6.13-2+deb13u1_arm64.deb 55e1976cd513224441e9f754a835bffe22713da9 155212 squid-purge_6.13-2+deb13u1_arm64.deb 77230be9a3c203872c5b6977eb999cee48dd52b1 10065 squid_6.13-2+deb13u1_arm64-buildd.buildinfo 30e4186a8e7602f70439254c85eeaeeda55a3b8a 2499956 squid_6.13-2+deb13u1_arm64.deb 4588d417da37a47b54b53fed1c3ba905957ab85e 190960 squidclient-dbgsym_6.13-2+deb13u1_arm64.deb e8c8c3a93614e86278dca16b4f287be571bb39d6 164560 squidclient_6.13-2+deb13u1_arm64.deb Checksums-Sha256: b527d07950d05429046304f68f064dce91617538b9b64d137821a447b508faa6 148576 squid-cgi-dbgsym_6.13-2+deb13u1_arm64.deb 12ae219ea0773fc53d9d1f2e0ff417724f74dcb3e198a4e2736864e64a0cd319 161908 squid-cgi_6.13-2+deb13u1_arm64.deb 3e097d2bef0efbeeffc0a2a6fdd0b5df9387df6a400cc4d40b30a072d651232d 23143624 squid-dbgsym_6.13-2+deb13u1_arm64.deb 0ff8998f5d13ff2dd34c1663fea5e00b8a298acb9e671ddd30f15078e8f0b7aa 24870448 squid-openssl-dbgsym_6.13-2+deb13u1_arm64.deb 8a01c692e92bf1d300947afa7b76d36b75a23a5497b6e907d36982ab91067c2a 2369016 squid-openssl_6.13-2+deb13u1_arm64.deb 1bc8699d8c1d93f344f0902b6f377f13c2c14389bd16079f8cdb8e779b3e1695 88836 squid-purge-dbgsym_6.13-2+deb13u1_arm64.deb 3e1b7095ee896cb4cc6d67e82bc31498dd0d738ce2069b9d2594f4320f06ad36 155212 squid-purge_6.13-2+deb13u1_arm64.deb 86ad29159ac35bf292cda1da8d3e2873d8fe487859b7dde1c2beee8d15d02e3e 10065 squid_6.13-2+deb13u1_arm64-buildd.buildinfo f7bbb5f7b9cd827867338e79ced465b66c9a62934a298d7bffb1760ff460f65e 2499956 squid_6.13-2+deb13u1_arm64.deb a67bdc5b164e21b71d2b9344da8b4ecfe9994e663b02e84fc6567764033876a3 190960 squidclient-dbgsym_6.13-2+deb13u1_arm64.deb 202becc6e55b6ac73a9bd3089b31481c5bfbff81518c3ed774da1a0332b2db55 164560 squidclient_6.13-2+deb13u1_arm64.deb Files: fbe529244e3f7378db88d3aed602a58b 148576 debug optional squid-cgi-dbgsym_6.13-2+deb13u1_arm64.deb 7b25e957ac6d340b0385bcd4bd61fff8 161908 web optional squid-cgi_6.13-2+deb13u1_arm64.deb 93fb947b42efaa1efbd1f837abba5c18 23143624 debug optional squid-dbgsym_6.13-2+deb13u1_arm64.deb edf0f9bf683538c5e6891666aee8445d 24870448 debug optional squid-openssl-dbgsym_6.13-2+deb13u1_arm64.deb 773fe657d57ee84eeca2166dd39f132f 2369016 web optional squid-openssl_6.13-2+deb13u1_arm64.deb 3a98388eed82c13c84561c66881694d2 88836 debug optional squid-purge-dbgsym_6.13-2+deb13u1_arm64.deb 4f365b725985c73400b3a4d641794caf 155212 web optional squid-purge_6.13-2+deb13u1_arm64.deb 176647d981ea765e2f7c80fe1247f2ec 10065 web optional squid_6.13-2+deb13u1_arm64-buildd.buildinfo a49625f3523b64605f5669ad29b64d7e 2499956 web optional squid_6.13-2+deb13u1_arm64.deb 454c78f4548264a9ce2529a43432148b 190960 debug optional squidclient-dbgsym_6.13-2+deb13u1_arm64.deb 8c73a4295dc9825391cdc3122b5a2117 164560 web optional squidclient_6.13-2+deb13u1_arm64.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEYxmcRLDHP0tCCM0oScpU3dYulLgFAmkCAEUACgkQScpU3dYu lLiJsQ//UA0EmwjbcQ7UE2lFwDZpIp7F4P1v06pWbAa3mOC6YKfNaPcejZedLZkM PLsUmeZR1KFz9kqrBBfjlzaKy6JLfqH2n4UPGO1T71TpmEqdRKnsLS1O0QO7Dbg3 835dg3ZCHn3LXPLF5a+y1vwBDb191+7lI7d6g7dUVClZN5gXYJOhz9ksF7VPb1qH Lac7cLsSneR+Y0X568dRnOQ5YeJI8wnBcrR2PsCqiUjJaPmGw2zFVFrNzeJCOepW b7a0CY/g2N848vzMk2hbEv3svJ286aZnsXg6xa8kf57/8tKPW0NQGCu/31mqcEnn lTnvrsjn42SXFLAzVOpDVJWCP90Stjc05kxJ1y1fuLySyf1Np0bE86JbRELfHTZs TV25l/nXAytfqnBQbnYz44xcIOCUQjiS2LkI/pPL091gD8PZ5LEAQf2MaPAsu6gd 3z8EQ77LjRZ/cBN6lR73WjJOIGd3ysVYgkTdLGvMCmYTJgMczlvq2cRFe0hX2P+3 e8zEs3BVuSbb3cW4Bity5I2rMk25WWgzElzewvc90SXioFKAuA0WJlU7jAWmY9LD jxOVWeeMLkx17JUZhauNIHKUb/B+ufysf5qBh4lD/MtMfZkoI9/+4P0tkBbXTzzS uwJfZhpsVlNevzmCdj6B4kfhhFnh9k0P3r9lvR44z+Ei1T/Jy7Y= =mM+V -----END PGP SIGNATURE-----