[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-23 Thread Marc Deslauriers
The regression fix has now been published: https://ubuntu.com/security/notices/USN-6728-3 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2060880 Title: squid crashes after update to

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-22 Thread Marc Deslauriers
Thanks for testing it, it's much appreciated! -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2060880 Title: squid crashes after update to 4.10-1ubuntu1.10 To manage notifications about this bug go

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-22 Thread Ale
Just tried it over the week-end, no crashes detected. Works fine here, thanks for your work! -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2060880 Title: squid crashes after update to

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-19 Thread Marc Deslauriers
I have located the issue and have prepared an updated package that will reintroduce the fixes for CVE-2023-5824. I have uploaded the updated package to the security team PPA here: https://launchpad.net/~ubuntu-security- proposed/+archive/ubuntu/ppa/+packages Once it has finished building, could

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-11 Thread Marc Deslauriers
https://ubuntu.com/security/notices/USN-6728-2 -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2060880 Title: squid crashes after update to 4.10-1ubuntu1.10 To manage notifications about this bug go

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-11 Thread Marc Deslauriers
Thanks for testing everyone, and thanks for the configuration details. I will attempt to reproduce this issue so that I can figure out what exactly caused the regression so that we can get CVE-2023-5824 fixed again soon. -- You received this bug notification because you are a member of Ubuntu

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-11 Thread Launchpad Bug Tracker
This bug was fixed in the package squid - 4.10-1ubuntu1.11 --- squid (4.10-1ubuntu1.11) focal-security; urgency=medium * SECURITY REGRESSION: crashing issue (LP: #2060880) - debian/patches/CVE-2023-5824-*.patch: disable patches until the cause of the crashes has been

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-11 Thread Ale
Regarding #3 here is the very simple config we use in /etc/squid/conf.d/local. The rest is just the default. acl localnet src 128.X.0.0/15 acl localnet src 2001:X:X::/48 acl SSL_ports port 8443 acl SSL_ports port 8128 acl SSL_ports port 8090 http_access deny to_localhost cache_dir aufs

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-11 Thread Alex Brett
We also experienced the issue (it was readily reproducible in our case), and the proposed 4.10-1ubuntu1.11 package appears to have resolved it. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2060880

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-11 Thread Ale
Just installed the packages from security-proposed, the work fine on our configuration. Same workload triggering the crashes (10 clients doing apt-get update at the same time through the proxy) works fine as it always did before. -- You received this bug notification because you are a member of

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-10 Thread David Clarke
Testing the new packages now, and have not yet had any segfaults, whereas the 4.10-1ubuntu1.10 started logging faults with a couple of minutes of starting and very regularly (sub-minute) after that. -- You received this bug notification because you are a member of Ubuntu Bugs, which is

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-10 Thread Marc Deslauriers
** Information type changed from Public to Public Security ** Changed in: squid (Ubuntu) Assignee: (unassigned) => Marc Deslauriers (mdeslaur) ** Changed in: squid (Ubuntu) Importance: Undecided => Critical -- You received this bug notification because you are a member of Ubuntu Bugs,

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-10 Thread Marc Deslauriers
I have prepared an update with the patches for CVE-2023-5824 backed out as they were extensive and are the most likely cause of this regression. I have uploaded it to the security team PPA here: https://launchpad.net/~ubuntu-security- proposed/+archive/ubuntu/ppa/+packages Once the package has

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-10 Thread Marc Deslauriers
Thanks for reporting this issue. What configuration is this squid server used in? I would like to reproduce the issue, but I need more details to set up a similar environment. -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu.

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-10 Thread Launchpad Bug Tracker
Status changed to 'Confirmed' because the bug affects multiple users. ** Changed in: squid (Ubuntu) Status: New => Confirmed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/2060880 Title:

[Bug 2060880] Re: squid crashes after update to 4.10-1ubuntu1.10

2024-04-10 Thread Ale
Fruther log messages from dmesg: [ 1541.601143] traps: squid[6442] general protection fault ip:556e32429691 sp:7fffc8cdd2f0 error:0 in squid[556e3239e000+455000] [ 1546.316442] squid[7332]: segfault at 66170483 ip 55c000624691 sp 7ffda1b40ca0 error 4 in squid[55c000599000+455000] [