7.5
CVSSv3

CVE-2021-44540

Published: 23/12/2021 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 446
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

A flaw was found in privoxy prior to 3.0.32. A invalid read of size two may occur in chunked_body_is_complete() leading to denial of service. (CVE-2021-20275) A vulnerability was found in Privoxy which was fixed in get_url_spec_param() by freeing memory of compiled pattern spec before bailing. (CVE-2021-44540) A memory leak vulnerability was found in Privoxy when handling errors. (CVE-2021-44542)

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

privoxy privoxy

Vendor Advisories

Several security issues were fixed in Privoxy ...
A flaw was found in privoxy before 3032 A invalid read of size two may occur in chunked_body_is_complete() leading to denial of service (CVE-2021-20275) A vulnerability was found in Privoxy which was fixed in get_url_spec_param() by freeing memory of compiled pattern spec before bailing (CVE-2021-44540) A memory leak vulnerability was found in ...
A security issue has been found in Privoxy before version 3033 get_url_spec_param() did not free memory of compiled pattern spec before bailing ...