📦 Privoxy

by Privoxy

🔍 What is Privoxy?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2021-44541

HIGH CVSS 7.5 Dec 23, 2021

This vulnerability in Privoxy is a memory management flaw in the process_encrypted_request_headers() function where header memory isn't properly freed when failing to get the request destination. This...

CVE-2021-20215

HIGH CVSS 7.5 Mar 25, 2021

This vulnerability in Privoxy versions before 3.0.29 involves memory leaks in the show-status CGI handler when memory allocations fail, which can lead to a denial of service (system crash). It affects...

CVE-2021-20217

HIGH CVSS 7.5 Mar 25, 2021

This vulnerability in Privoxy allows attackers to trigger an assertion failure via a crafted CGI request, causing a denial of service. Systems running Privoxy versions before 3.0.31 are affected. The ...

CVE-2020-35502

HIGH CVSS 7.5 Mar 25, 2021

This vulnerability in Privoxy versions before 3.0.29 involves memory leaks that occur when response buffering reaches limits or during low memory conditions. The flaw can cause the Privoxy proxy servi...

CVE-2021-20211

HIGH CVSS 7.5 Mar 25, 2021

A memory leak vulnerability in Privoxy versions before 3.0.29 when client tags are active can cause the application to crash, leading to denial of service. This affects systems running vulnerable Priv...

CVE-2021-20213

HIGH CVSS 7.5 Mar 25, 2021

This vulnerability in Privoxy allows a denial-of-service attack when specific conditions are met. If accept-intercepted-requests is enabled and Privoxy fails to parse the Host header while memory allo...

CVE-2021-20276

HIGH CVSS 7.5 Mar 9, 2021

This vulnerability in Privoxy allows an attacker to cause denial of service by passing invalid patterns to the pcre_compile() function, leading to invalid memory access. It affects Privoxy web proxy s...

CVE-2021-20272

HIGH CVSS 7.5 Mar 9, 2021

This vulnerability in Privoxy allows remote attackers to crash the proxy server by sending a specially crafted CGI request that triggers an assertion failure. It affects all Privoxy installations befo...

CVE-2021-20274

HIGH CVSS 7.5 Mar 9, 2021

This vulnerability in Privoxy allows a crash due to a NULL-pointer dereference when the SOCKS server behaves unexpectedly. It affects Privoxy versions before 3.0.32. Systems using Privoxy as a proxy w...