A memory leak vulnerability was found in Privoxy before 3.0.29 in the show-status CGI handler when no action files are configured.
CVSS Details
- CVSS 3.1 Base Score: 7.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade privoxy | Feb 8, 2021 | Feb 8, 2021 |
| Gentoo Linux | — | Upgrade net-proxy/privoxy. | Jul 9, 2021 | May 25, 2021 |
| Oracle Solaris | — | Upgrade web/proxy/privoxy to version 3.0.32-11.4.32.0.1.88.2 on Solaris 11.4 | Apr 21, 2021 | Apr 21, 2021 |
| Ubuntu | — | Upgrade privoxy (Ubuntu Pro)Upgrade privoxy | Mar 23, 2021 | Mar 22, 2021 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub