File _patchinfo of Package patchinfo.15550
<patchinfo incident="15550">
<issue tracker="cve" id="2020-14059"/>
<issue tracker="cve" id="2019-18860"/>
<issue tracker="bnc" id="1173304">VUL-0: CVE-2020-14059: squid: denial of service issue in TLS Handshake</issue>
<issue tracker="bnc" id="1167373">VUL-1: CVE-2019-18860: squid: when certain web browsers are used, mishandles HTML in the host (aka hostname) parameter to cachemgr.cgi.</issue>
<packager>adamm</packager>
<rating>important</rating>
<category>security</category>
<summary>Security update for squid</summary>
<description>This update for squid fixes the following issues:
- CVE-2020-14059: Fixed an issue where a client could potentially deny the service of a server
during TLS Handshake (bsc#1173304).
- CVE-2019-18860: Fixed handling of invalid domain names in cachemgr.cgi (bsc#1167373).
</description>
</patchinfo>