-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA512 Format: 1.8 Date: Sun, 26 Oct 2025 09:31:13 +0100 Source: squid Binary: squid squid-cgi squid-cgi-dbgsym squid-dbgsym squid-openssl squid-openssl-dbgsym squid-purge squid-purge-dbgsym squidclient squidclient-dbgsym Architecture: i386 Version: 6.13-2+deb13u1 Distribution: trixie-security Urgency: high Maintainer: all / amd64 / i386 Build Daemon (x86-conova-01) Changed-By: Bastien Roucariès Description: squid - Full featured Web Proxy cache (HTTP proxy GnuTLS flavour) squid-cgi - Full featured Web Proxy cache (HTTP proxy) - control CGI squid-openssl - Full featured Web Proxy cache (HTTP proxy OpenSSL flavour) squid-purge - Full featured Web Proxy cache (HTTP proxy) - cache management uti squidclient - Full featured Web Proxy cache (HTTP proxy) - HTTP(S) message util Closes: 1117048 1118341 Changes: squid (6.13-2+deb13u1) trixie-security; urgency=high . * Non Maintainer Upload by LTS team * Fix CVE-2025-62168 (Closes: #1118341) Due to a failure to redact HTTP Authentication credentials Squid is vulnerable to an Information Disclosure attack. * Fix CVE-2025-59362 (Closes: #1117048) Squid mishandles ASN.1 encoding of long SNMP OIDs. Checksums-Sha1: 1dac433a2cacae28db33109dc6cf7eaf3ce91355 139672 squid-cgi-dbgsym_6.13-2+deb13u1_i386.deb 3d4b4e603e58ab04fdae3ef1fd4f08acc8e13f6e 166440 squid-cgi_6.13-2+deb13u1_i386.deb baa68dd2f876867f1c4973ccd2ed993040584b7e 22257716 squid-dbgsym_6.13-2+deb13u1_i386.deb 5d236058a9c8eef21a7d1a2085d33d5229f555f8 23997948 squid-openssl-dbgsym_6.13-2+deb13u1_i386.deb 49a4ba09d76587313ba1b698d543d7ddaac055ba 2758240 squid-openssl_6.13-2+deb13u1_i386.deb 654afe67f163fb279ae09e918412d74bdf27afaf 85292 squid-purge-dbgsym_6.13-2+deb13u1_i386.deb 67ad8368c274189e9915f33d0ff10cbdc148a9d2 157500 squid-purge_6.13-2+deb13u1_i386.deb 42636a6b1f914e6e0cca5e52019b136d39ae7efb 9955 squid_6.13-2+deb13u1_i386-buildd.buildinfo 7bbd6ffa25c5efeb1bdc88fd65252748466b899d 2870440 squid_6.13-2+deb13u1_i386.deb a92a4a40fcaf836922502ceed51c43079f4032fa 182340 squidclient-dbgsym_6.13-2+deb13u1_i386.deb 8d9b411e6bc657d1a6ebdeccbffbe61bbf2cf364 169720 squidclient_6.13-2+deb13u1_i386.deb Checksums-Sha256: f74cb58692ba67a35781861f113436d6ed1836b44efe5743e218ff0b7c59b514 139672 squid-cgi-dbgsym_6.13-2+deb13u1_i386.deb 9a7fca572f0eb9aff3871a8c8dcf40c8a1fbe0418c81ef57c1aecefee09aec66 166440 squid-cgi_6.13-2+deb13u1_i386.deb 009acb960c3ccd1a85a32089ffc152fde66aa99c474019c296f69a430be82c2b 22257716 squid-dbgsym_6.13-2+deb13u1_i386.deb 6a27b567ccad533752a081cc9638f9eb4bcae1eb11d201551197169a26dfcf15 23997948 squid-openssl-dbgsym_6.13-2+deb13u1_i386.deb 7cd646f62df93556e408a02ac0061217a24c90b33e8c44c4c8f10650a3026ab7 2758240 squid-openssl_6.13-2+deb13u1_i386.deb 1eaa37de763dbba85be4419c056fe2d29304266cb3dabd71aa3c39b744663f12 85292 squid-purge-dbgsym_6.13-2+deb13u1_i386.deb af6cdd8956a9b7b866b37d8eef3037e67ad884ac56cc76c575aa8d50fb368f12 157500 squid-purge_6.13-2+deb13u1_i386.deb 73dc4d83b8438a4e818eea7eb6b623661b8488fff4ccfcfc617e93b53d7764e3 9955 squid_6.13-2+deb13u1_i386-buildd.buildinfo 1867ed66e464c8025249c7c951b305e92f8682c9a6e707a5b0aff94b6d0394b4 2870440 squid_6.13-2+deb13u1_i386.deb 0d30c9cceaff8fda89b2762f797b95ab5bd197e73556ced90be3c132833c8c1b 182340 squidclient-dbgsym_6.13-2+deb13u1_i386.deb 0c461c5ed8dc5a99cc076153c82eb9c920341602c729a0ce6419bfde5997762d 169720 squidclient_6.13-2+deb13u1_i386.deb Files: a2bf737ee2ee3972310f44efea2292f5 139672 debug optional squid-cgi-dbgsym_6.13-2+deb13u1_i386.deb 202e95d57c460088268bf1094d9670a2 166440 web optional squid-cgi_6.13-2+deb13u1_i386.deb 1535fbcdce002ef6ef50c33e4cb9bac2 22257716 debug optional squid-dbgsym_6.13-2+deb13u1_i386.deb be2ba6b17dc0f9c27eec3c08bbfaac99 23997948 debug optional squid-openssl-dbgsym_6.13-2+deb13u1_i386.deb c31b140aa3a05fb9e2d4b8fbd44c3c19 2758240 web optional squid-openssl_6.13-2+deb13u1_i386.deb e4ab7312790100aa61ad48a2900dec4c 85292 debug optional squid-purge-dbgsym_6.13-2+deb13u1_i386.deb 7bc8abc70cc1124a106700abf8d072f2 157500 web optional squid-purge_6.13-2+deb13u1_i386.deb dc52a3eb7877700ada30203c2436a098 9955 web optional squid_6.13-2+deb13u1_i386-buildd.buildinfo 7479be588010f097264202a2c1851f5a 2870440 web optional squid_6.13-2+deb13u1_i386.deb de98d8930cc752776c73193b3c511570 182340 debug optional squidclient-dbgsym_6.13-2+deb13u1_i386.deb 3c33706128a28d3493045552035d7a0e 169720 web optional squidclient_6.13-2+deb13u1_i386.deb -----BEGIN PGP SIGNATURE----- iQIzBAEBCgAdFiEEaPzFtKPtF0JrKPV5iZlfn74WV6kFAmkCAR0ACgkQiZlfn74W V6lYoRAAmbV5WcIWE1V0/yYHynGV9rCyiaXIdvL6ZGFk5uCbsyC4Jy3lA3gNXQ9q J71oS4vIa+fGlKUdop+YcYrpqhlb6RSw+OJWO7P2bQmQC9rTHByZnZpDTF8gMmgX UF2CxGdfC21G+qIZgi7gsv4aHXGufdZq5RwDzzEdAx9kkxIRvh/wN9whL3ONplmP o2oeLKtwrQQwvrtvrZD4/YcLEu0j7u9Yv6tglbd1LteZf2skBHmYjFjEyrtjEeZH LVrfEXQmC0xtBGV9q54Qma2uXbDweW+cOCYRvb0zoF4bsFL+VXLHWGRZiYL/oTM6 9jTuRphXAnEKSvS10TvpQ74mu4g+J64DS3KMvulB62O34PH7nLIYOJz0OnMyEt93 wsId03m/mD7Mc7lqMoASIdbh2s36u6OHkguObqLeAeBeAu+L3Wu4MeAVRGMhlJoi oC2ygNLrP3KIJCIppsspY8j9sF77y/40oaqKsglZkczaJqMi5FqqliJR6o0H6D2G tEReLeaMdvoJ92DrLqr7NEg53n0CTCeqFIbEUjRY6WdMkswJuZUruNDDlRMs283E 37UiZgHVwwMA4sBa1e8bK5R3b62WiQzEzlV0CbIziXZLGsOQZykrJSWDopL0bbCr ItIrsdE6aE7uj+ITgK8xsO1mfjjZIkfCzbUtmlmV7yyUP1HKWJY= =ZLPg -----END PGP SIGNATURE-----