Show filters
29 Total Results
Displaying 11-20 of 29
Sort by:
Attacker Value
Unknown
CVE-2021-20210
Disclosure Date: March 25, 2021 (last updated February 22, 2025)
A flaw was found in Privoxy in versions before 3.0.29. Memory leak in the show-status CGI handler when no filter files are configured can lead to a system crash.
0
Attacker Value
Unknown
CVE-2021-20217
Disclosure Date: March 25, 2021 (last updated February 22, 2025)
A flaw was found in Privoxy in versions before 3.0.31. An assertion failure triggered by a crafted CGI request may lead to denial of service. The highest threat from this vulnerability is to system availability.
0
Attacker Value
Unknown
CVE-2021-20216
Disclosure Date: March 25, 2021 (last updated February 22, 2025)
A flaw was found in Privoxy in versions before 3.0.31. A memory leak that occurs when decompression fails unexpectedly may lead to a denial of service. The highest threat from this vulnerability is to system availability.
0
Attacker Value
Unknown
CVE-2021-20211
Disclosure Date: March 25, 2021 (last updated February 22, 2025)
A flaw was found in Privoxy in versions before 3.0.29. Memory leak when client tags are active can cause a system crash.
0
Attacker Value
Unknown
CVE-2021-20273
Disclosure Date: March 09, 2021 (last updated February 22, 2025)
A flaw was found in privoxy before 3.0.32. A crash can occur via a crafted CGI request if Privoxy is toggled off.
0
Attacker Value
Unknown
CVE-2021-20272
Disclosure Date: March 09, 2021 (last updated February 22, 2025)
A flaw was found in privoxy before 3.0.32. An assertion failure could be triggered with a crafted CGI request leading to server crash.
0
Attacker Value
Unknown
CVE-2021-20274
Disclosure Date: March 09, 2021 (last updated February 22, 2025)
A flaw was found in privoxy before 3.0.32. A crash may occur due a NULL-pointer dereference when the socks server misbehaves.
0
Attacker Value
Unknown
CVE-2021-20275
Disclosure Date: March 09, 2021 (last updated February 22, 2025)
A flaw was found in privoxy before 3.0.32. A invalid read of size two may occur in chunked_body_is_complete() leading to denial of service.
0
Attacker Value
Unknown
CVE-2021-20276
Disclosure Date: March 09, 2021 (last updated February 22, 2025)
A flaw was found in privoxy before 3.0.32. Invalid memory access with an invalid pattern passed to pcre_compile() may lead to denial of service.
0
Attacker Value
Unknown
Local privilege escalation from user privoxy to root
Disclosure Date: January 24, 2020 (last updated February 21, 2025)
UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of privoxy on openSUSE Leap 15.1, Factory allows local attackers to escalate from user privoxy to root. This issue affects: openSUSE Leap 15.1 privoxy version 3.0.28-lp151.1.1 and prior versions. openSUSE Factory privoxy version 3.0.28-2.1 and prior versions.
0