{"id":"CLSA-2021-1629902677","summary":"Fix of CVE: CVE-2020-14058, CVE-2020-15049","details":"- CVE-2020-14058: fix handling of unknown SSL errors which resulted in denial of\n  service\n- CVE-2020-15049: fix incorrect validation of Content-Length field leading to\n  Http smuggling and Poisoning attack","modified":"2026-06-01T00:33:14.892421713Z","published":"2021-08-25T14:44:37Z","upstream":["CVE-2020-14058","CVE-2020-15049"],"references":[{"type":"ADVISORY","url":"https://errata.cloudlinux.com/els6/CLSA-2021-1629902677.html"}],"affected":[{"package":{"name":"squid","ecosystem":"TuxCare:CentOS:6","purl":"pkg:rpm/tuxcare/squid?distro=centos-6"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"7:3.1.23-30.el6.cloudlinux.els"}]}],"database_specific":{"source":"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos6els/CLSA-2021-1629902677.json"}}],"schema_version":"1.7.5"}