Skip to navigation Skip to main content

Utilities

  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
Red Hat Customer Portal
  • Subscriptions
  • Downloads
  • Red Hat Console
  • Get Support
  • Products

    Top Products

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Products

    Downloads and Containers

    • Downloads
    • Packages
    • Containers

    Top Resources

    • Documentation
    • Product Life Cycles
    • Product Compliance
    • Errata
  • Knowledge

    Red Hat Knowledge Center

    • Knowledgebase Solutions
    • Knowledgebase Articles
    • Customer Portal Labs
    • Errata

    Top Product Docs

    • Red Hat Enterprise Linux
    • Red Hat OpenShift
    • Red Hat Ansible Automation Platform
    All Product Docs

    Training and Certification

    • About
    • Course Index
    • Certification Index
    • Skill Assessment
  • Security

    Red Hat Product Security Center

    • Security Updates
    • Security Advisories
    • Red Hat CVE Database
    • Errata

    References

    • Security Bulletins
    • Severity Ratings
    • Security Data

    Top Resources

    • Security Labs
    • Backporting Policies
    • Security Blog
  • Support

    Red Hat Support

    • Support Cases
    • Troubleshoot
    • Get Support
    • Contact Red Hat Support

    Red Hat Community Support

    • Customer Portal Community
    • Community Discussions
    • Red Hat Accelerator Program

    Top Resources

    • Product Life Cycles
    • Customer Portal Labs
    • Red Hat JBoss Supported Configurations
    • Red Hat Lightspeed
Or troubleshoot an issue.

Select Your Language

  • English
  • Français
  • 한국어
  • 日本語
  • 中文 (中国)

Infrastructure and Management

  • Red Hat Enterprise Linux
  • Red Hat Satellite
  • Red Hat Subscription Management
  • Red Hat Lightspeed
  • Red Hat Ansible Automation Platform

Cloud Computing

  • Red Hat OpenShift
  • Red Hat OpenStack Platform
  • Red Hat OpenShift
  • Red Hat OpenShift AI
  • Red Hat OpenShift Dedicated
  • Red Hat Advanced Cluster Security for Kubernetes
  • Red Hat Advanced Cluster Management for Kubernetes
  • Red Hat Quay
  • Red Hat OpenShift Dev Spaces
  • Red Hat OpenShift Service on AWS

Storage

  • Red Hat Gluster Storage
  • Red Hat Hyperconverged Infrastructure
  • Red Hat Ceph Storage
  • Red Hat OpenShift Data Foundation

Runtimes

  • Red Hat Runtimes
  • Red Hat JBoss Enterprise Application Platform
  • Red Hat Data Grid
  • Red Hat JBoss Web Server
  • Red Hat build of Keycloak
  • Red Hat support for Spring Boot
  • Red Hat build of Node.js
  • Red Hat build of Quarkus

Integration and Automation

  • Red Hat Application Foundations
  • Red Hat Fuse
  • Red Hat AMQ
  • Red Hat 3scale API Management
All Products
Red Hat Product Errata RHSA-2026:8317 - Security Advisory
Issued:
2026-04-15
Updated:
2026-04-15

RHSA-2026:8317 - Security Advisory

  • Overview
  • Updated Packages

Synopsis

Important: squid:4 security update

Type/Severity

Security Advisory: Important

Red Hat Lightspeed patch analysis

Identify and remediate systems affected by this advisory.

View affected systems

Topic

An update for the squid:4 module is now available for Red Hat Enterprise Linux 8.

Red Hat Product Security has rated this update as having a security impact of Important. A Common Vulnerability Scoring System (CVSS) base score, which gives a detailed severity rating, is available for each vulnerability from the CVE link(s) in the References section.

Description

Squid is a high-performance proxy caching server for web clients, supporting FTP, and HTTP data objects.

Security Fix(es):

  • squid: Squid: Denial of Service via heap Use-After-Free vulnerability in ICP handling (CVE-2026-33526)
  • Squid: Squid: Denial of Service via crafted ICP traffic (CVE-2026-32748)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Solution

For details on how to apply this update, which includes the changes described in this advisory, refer to:

https://access.redhat.com/articles/11258

Affected Products

  • Red Hat Enterprise Linux for x86_64 8 x86_64
  • Red Hat Enterprise Linux for IBM z Systems 8 s390x
  • Red Hat Enterprise Linux for Power, little endian 8 ppc64le
  • Red Hat Enterprise Linux for ARM 64 8 aarch64
  • Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 8.10 x86_64
  • Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 8.10 aarch64
  • Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 8.10 ppc64le
  • Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 8.10 s390x

Fixes

  • BZ - 2451574 - CVE-2026-33526 squid: Squid: Denial of Service via heap Use-After-Free vulnerability in ICP handling
  • BZ - 2451577 - CVE-2026-32748 Squid: Squid: Denial of Service via crafted ICP traffic

CVEs

  • CVE-2026-32748
  • CVE-2026-33526

References

  • https://access.redhat.com/security/updates/classification/#important
Note: More recent versions of these packages may be available. Click a package name for more details.

Red Hat Enterprise Linux for x86_64 8

SRPM
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.src.rpm SHA-256: 68456b844f86281a4db4053345c0704bea4293018ca2cd394f979ba8cd263cb4
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.src.rpm SHA-256: eb885bf9f60f85ed3de5419b82f83e545edee20247ba895800d8f15f7a88c127
x86_64
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.x86_64.rpm SHA-256: 40d43cf013f21f97631fb8470285164a523071f7882f748663494c0f1625b427
libecap-debuginfo-1.0.1-2.module+el8.9.0+19703+a1da7223.x86_64.rpm SHA-256: 6e683c898b1c714b9485a0acb012d0e5b71ddb75514cf6a37ee472ad6c373bd9
libecap-debugsource-1.0.1-2.module+el8.9.0+19703+a1da7223.x86_64.rpm SHA-256: f9d480af68e77827a9e84e1cdc2b9d48fefda63dceec87b54114568520ba6ca7
libecap-devel-1.0.1-2.module+el8.9.0+19703+a1da7223.x86_64.rpm SHA-256: 11b5623fb94967adf20000120212bb87d5e0485c1a4d17ccaeea54bf45abeaca
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.x86_64.rpm SHA-256: 6c308fe622db4918a0a3096b7e0822f1a1c7d34b366023abf202e46481fc3a0e
squid-debuginfo-4.15-10.module+el8.10.0+24189+04a20c8a.11.x86_64.rpm SHA-256: a835c33506dd78516f718d46474969d06fe7ee93b54cebe3e638a0bbc0c83533
squid-debugsource-4.15-10.module+el8.10.0+24189+04a20c8a.11.x86_64.rpm SHA-256: 3dfe43f65727c98050dd92b795e47d83b799fb1c352097a12b812683cf18908e

Red Hat Enterprise Linux for IBM z Systems 8

SRPM
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.src.rpm SHA-256: 68456b844f86281a4db4053345c0704bea4293018ca2cd394f979ba8cd263cb4
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.src.rpm SHA-256: eb885bf9f60f85ed3de5419b82f83e545edee20247ba895800d8f15f7a88c127
s390x
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.s390x.rpm SHA-256: 7b177d330230a2a8637f1f46c83e52796fc981f307861cd5ac4e4ff46759a6a3
libecap-debuginfo-1.0.1-2.module+el8.9.0+19703+a1da7223.s390x.rpm SHA-256: cdaadf99ef98a02d12f5047e680e5f40c71f7a2df68e2808343242f0a37bf76d
libecap-debugsource-1.0.1-2.module+el8.9.0+19703+a1da7223.s390x.rpm SHA-256: 24efacc784d597f773c9856ed0ed99d78f9c0b9ece1b84de60cef147298e9c01
libecap-devel-1.0.1-2.module+el8.9.0+19703+a1da7223.s390x.rpm SHA-256: e7d1d34aaeb21d0dbcb11af624315ecd47b7d7b644edd52ea09f0f0614bb6f54
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.s390x.rpm SHA-256: 8c06b807a593452fe664c52c7ed8c9f094ee34eed4d95a35b6412823be307d25
squid-debuginfo-4.15-10.module+el8.10.0+24189+04a20c8a.11.s390x.rpm SHA-256: 3cb73107fcb7a02c8d9576dc1803f4bab27a2053b149a630ca38485f26b40f4d
squid-debugsource-4.15-10.module+el8.10.0+24189+04a20c8a.11.s390x.rpm SHA-256: 0ef6cd6dcfb2f277d2bc3a1bb9b92771ffee3c3a55e47b1c690ca3097acb537d

Red Hat Enterprise Linux for Power, little endian 8

SRPM
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.src.rpm SHA-256: 68456b844f86281a4db4053345c0704bea4293018ca2cd394f979ba8cd263cb4
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.src.rpm SHA-256: eb885bf9f60f85ed3de5419b82f83e545edee20247ba895800d8f15f7a88c127
ppc64le
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.ppc64le.rpm SHA-256: 779f161dd569dae1700e0acfd9169bd55763db01ad3112207fbcd49716bfd58f
libecap-debuginfo-1.0.1-2.module+el8.9.0+19703+a1da7223.ppc64le.rpm SHA-256: 6720c36ff829fc1b8004458fb08001f1fd8b3a40bdd57e418543a3b890421129
libecap-debugsource-1.0.1-2.module+el8.9.0+19703+a1da7223.ppc64le.rpm SHA-256: 8120cedcc13b839d73ed203a89ebbfe1803579e0549be7ae5adab0976f1fe0de
libecap-devel-1.0.1-2.module+el8.9.0+19703+a1da7223.ppc64le.rpm SHA-256: fe6d7e62eb8f5eb30ccd717c5c46cc9c1f6388b158515d25149d259bf30e7737
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.ppc64le.rpm SHA-256: 64c06cde5e41809da26eba33e07b880e6352598d4e7d8fd90ad8a4cdc57a6e02
squid-debuginfo-4.15-10.module+el8.10.0+24189+04a20c8a.11.ppc64le.rpm SHA-256: 73736401fe2fcaf3e49d4d96d2f0d5f1356304f36db4042ee42389c2bc94258d
squid-debugsource-4.15-10.module+el8.10.0+24189+04a20c8a.11.ppc64le.rpm SHA-256: d3ed4b9f8042757e7dafcab278ff93c4efe16095b98d48d3efc5d69863cb3a99

Red Hat Enterprise Linux for ARM 64 8

SRPM
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.src.rpm SHA-256: 68456b844f86281a4db4053345c0704bea4293018ca2cd394f979ba8cd263cb4
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.src.rpm SHA-256: eb885bf9f60f85ed3de5419b82f83e545edee20247ba895800d8f15f7a88c127
aarch64
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.aarch64.rpm SHA-256: 32b30079509b8d16ed9e85fb0ed15c0e2a8efae115f9fd5622219b65d2363db8
libecap-debuginfo-1.0.1-2.module+el8.9.0+19703+a1da7223.aarch64.rpm SHA-256: 72b65db7b4a0220a8185e142c1fc8e2c56480b05028a924138ea24d1ce90b3dd
libecap-debugsource-1.0.1-2.module+el8.9.0+19703+a1da7223.aarch64.rpm SHA-256: d408408456d44c98da25fb4dc3dbd7de545b3ffa6de8527bd7598a366a7012a3
libecap-devel-1.0.1-2.module+el8.9.0+19703+a1da7223.aarch64.rpm SHA-256: 0b78af9f6df4a8580f41145718d3f5b0d52bf566bdc6fed26b2ed8c8140f42bc
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.aarch64.rpm SHA-256: e1e97a60566612f6972ecae227ccb504ea990d717645b2564a6f9da38e64eaf3
squid-debuginfo-4.15-10.module+el8.10.0+24189+04a20c8a.11.aarch64.rpm SHA-256: 2bcb0d9abbe977a479b244eba20f5c046b5e38a8890b112ca07b4f83dcd7487a
squid-debugsource-4.15-10.module+el8.10.0+24189+04a20c8a.11.aarch64.rpm SHA-256: 47ceaf934ba62cc7ee046627618c0e5a0f3e20b7ab42ab38d9fa16d7442be89a

Red Hat Enterprise Linux for x86_64 - Extended Life Cycle 8.10

SRPM
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.src.rpm SHA-256: 68456b844f86281a4db4053345c0704bea4293018ca2cd394f979ba8cd263cb4
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.src.rpm SHA-256: eb885bf9f60f85ed3de5419b82f83e545edee20247ba895800d8f15f7a88c127
x86_64
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.x86_64.rpm SHA-256: 40d43cf013f21f97631fb8470285164a523071f7882f748663494c0f1625b427
libecap-debuginfo-1.0.1-2.module+el8.9.0+19703+a1da7223.x86_64.rpm SHA-256: 6e683c898b1c714b9485a0acb012d0e5b71ddb75514cf6a37ee472ad6c373bd9
libecap-debugsource-1.0.1-2.module+el8.9.0+19703+a1da7223.x86_64.rpm SHA-256: f9d480af68e77827a9e84e1cdc2b9d48fefda63dceec87b54114568520ba6ca7
libecap-devel-1.0.1-2.module+el8.9.0+19703+a1da7223.x86_64.rpm SHA-256: 11b5623fb94967adf20000120212bb87d5e0485c1a4d17ccaeea54bf45abeaca
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.x86_64.rpm SHA-256: 6c308fe622db4918a0a3096b7e0822f1a1c7d34b366023abf202e46481fc3a0e
squid-debuginfo-4.15-10.module+el8.10.0+24189+04a20c8a.11.x86_64.rpm SHA-256: a835c33506dd78516f718d46474969d06fe7ee93b54cebe3e638a0bbc0c83533
squid-debugsource-4.15-10.module+el8.10.0+24189+04a20c8a.11.x86_64.rpm SHA-256: 3dfe43f65727c98050dd92b795e47d83b799fb1c352097a12b812683cf18908e

Red Hat Enterprise Linux for ARM 64 - Extended Life Cycle 8.10

SRPM
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.src.rpm SHA-256: 68456b844f86281a4db4053345c0704bea4293018ca2cd394f979ba8cd263cb4
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.src.rpm SHA-256: eb885bf9f60f85ed3de5419b82f83e545edee20247ba895800d8f15f7a88c127
aarch64
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.aarch64.rpm SHA-256: 32b30079509b8d16ed9e85fb0ed15c0e2a8efae115f9fd5622219b65d2363db8
libecap-debuginfo-1.0.1-2.module+el8.9.0+19703+a1da7223.aarch64.rpm SHA-256: 72b65db7b4a0220a8185e142c1fc8e2c56480b05028a924138ea24d1ce90b3dd
libecap-debugsource-1.0.1-2.module+el8.9.0+19703+a1da7223.aarch64.rpm SHA-256: d408408456d44c98da25fb4dc3dbd7de545b3ffa6de8527bd7598a366a7012a3
libecap-devel-1.0.1-2.module+el8.9.0+19703+a1da7223.aarch64.rpm SHA-256: 0b78af9f6df4a8580f41145718d3f5b0d52bf566bdc6fed26b2ed8c8140f42bc
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.aarch64.rpm SHA-256: e1e97a60566612f6972ecae227ccb504ea990d717645b2564a6f9da38e64eaf3
squid-debuginfo-4.15-10.module+el8.10.0+24189+04a20c8a.11.aarch64.rpm SHA-256: 2bcb0d9abbe977a479b244eba20f5c046b5e38a8890b112ca07b4f83dcd7487a
squid-debugsource-4.15-10.module+el8.10.0+24189+04a20c8a.11.aarch64.rpm SHA-256: 47ceaf934ba62cc7ee046627618c0e5a0f3e20b7ab42ab38d9fa16d7442be89a

Red Hat Enterprise Linux for Power, little endian - Extended Life Cycle 8.10

SRPM
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.src.rpm SHA-256: 68456b844f86281a4db4053345c0704bea4293018ca2cd394f979ba8cd263cb4
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.src.rpm SHA-256: eb885bf9f60f85ed3de5419b82f83e545edee20247ba895800d8f15f7a88c127
ppc64le
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.ppc64le.rpm SHA-256: 779f161dd569dae1700e0acfd9169bd55763db01ad3112207fbcd49716bfd58f
libecap-debuginfo-1.0.1-2.module+el8.9.0+19703+a1da7223.ppc64le.rpm SHA-256: 6720c36ff829fc1b8004458fb08001f1fd8b3a40bdd57e418543a3b890421129
libecap-debugsource-1.0.1-2.module+el8.9.0+19703+a1da7223.ppc64le.rpm SHA-256: 8120cedcc13b839d73ed203a89ebbfe1803579e0549be7ae5adab0976f1fe0de
libecap-devel-1.0.1-2.module+el8.9.0+19703+a1da7223.ppc64le.rpm SHA-256: fe6d7e62eb8f5eb30ccd717c5c46cc9c1f6388b158515d25149d259bf30e7737
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.ppc64le.rpm SHA-256: 64c06cde5e41809da26eba33e07b880e6352598d4e7d8fd90ad8a4cdc57a6e02
squid-debuginfo-4.15-10.module+el8.10.0+24189+04a20c8a.11.ppc64le.rpm SHA-256: 73736401fe2fcaf3e49d4d96d2f0d5f1356304f36db4042ee42389c2bc94258d
squid-debugsource-4.15-10.module+el8.10.0+24189+04a20c8a.11.ppc64le.rpm SHA-256: d3ed4b9f8042757e7dafcab278ff93c4efe16095b98d48d3efc5d69863cb3a99

Red Hat Enterprise Linux for IBM z Systems - Extended Life Cycle 8.10

SRPM
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.src.rpm SHA-256: 68456b844f86281a4db4053345c0704bea4293018ca2cd394f979ba8cd263cb4
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.src.rpm SHA-256: eb885bf9f60f85ed3de5419b82f83e545edee20247ba895800d8f15f7a88c127
s390x
libecap-1.0.1-2.module+el8.9.0+19703+a1da7223.s390x.rpm SHA-256: 7b177d330230a2a8637f1f46c83e52796fc981f307861cd5ac4e4ff46759a6a3
libecap-debuginfo-1.0.1-2.module+el8.9.0+19703+a1da7223.s390x.rpm SHA-256: cdaadf99ef98a02d12f5047e680e5f40c71f7a2df68e2808343242f0a37bf76d
libecap-debugsource-1.0.1-2.module+el8.9.0+19703+a1da7223.s390x.rpm SHA-256: 24efacc784d597f773c9856ed0ed99d78f9c0b9ece1b84de60cef147298e9c01
libecap-devel-1.0.1-2.module+el8.9.0+19703+a1da7223.s390x.rpm SHA-256: e7d1d34aaeb21d0dbcb11af624315ecd47b7d7b644edd52ea09f0f0614bb6f54
squid-4.15-10.module+el8.10.0+24189+04a20c8a.11.s390x.rpm SHA-256: 8c06b807a593452fe664c52c7ed8c9f094ee34eed4d95a35b6412823be307d25
squid-debuginfo-4.15-10.module+el8.10.0+24189+04a20c8a.11.s390x.rpm SHA-256: 3cb73107fcb7a02c8d9576dc1803f4bab27a2053b149a630ca38485f26b40f4d
squid-debugsource-4.15-10.module+el8.10.0+24189+04a20c8a.11.s390x.rpm SHA-256: 0ef6cd6dcfb2f277d2bc3a1bb9b92771ffee3c3a55e47b1c690ca3097acb537d

The Red Hat security contact is secalert@redhat.com. More contact details at https://access.redhat.com/security/team/contact/.

Red Hat LinkedIn YouTube Facebook X, formerly Twitter

Quick Links

  • Downloads
  • Subscriptions
  • Support Cases
  • Customer Service
  • Product Documentation

Help

  • Contact Us
  • Customer Portal FAQ
  • Log-in Assistance

Site Info

  • Trust Red Hat
  • Browser Support Policy
  • Accessibility
  • Awards and Recognition
  • Colophon

Related Sites

  • redhat.com
  • developers.redhat.com
  • connect.redhat.com
  • cloud.redhat.com

Red Hat legal and privacy links

  • About Red Hat
  • Jobs
  • Events
  • Locations
  • Contact Red Hat
  • Red Hat Blog
  • Inclusion at Red Hat
  • Cool Stuff Store
  • Red Hat Summit
© 2026 Red Hat

Red Hat legal and privacy links

  • Privacy statement
  • Terms of use
  • All policies and guidelines
  • Digital accessibility