7.5
CVSSv3

CVE-2021-44542

Published: 23/12/2021 Updated: 07/11/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 446
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

A flaw was found in privoxy prior to 3.0.32. A invalid read of size two may occur in chunked_body_is_complete() leading to denial of service. (CVE-2021-20275) A vulnerability was found in Privoxy which was fixed in get_url_spec_param() by freeing memory of compiled pattern spec before bailing. (CVE-2021-44540) A memory leak vulnerability was found in Privoxy when handling errors. (CVE-2021-44542)

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

privoxy privoxy

Vendor Advisories

A flaw was found in privoxy before 3032 A invalid read of size two may occur in chunked_body_is_complete() leading to denial of service (CVE-2021-20275) A vulnerability was found in Privoxy which was fixed in get_url_spec_param() by freeing memory of compiled pattern spec before bailing (CVE-2021-44540) A memory leak vulnerability was found in ...
A security issue has been found in Privoxy before version 3033 send_http_request() leaked memory when handling errors ...

Mailing Lists

Announcing Privoxy 3033 stable -------------------------------------------------------------------- Privoxy 3033 fixes an XSS issue, multiple DoS issues and a couple of other bugs The issues also affect earlier Privoxy releases Privoxy 3033 also comes with a couple of general improvements and new features -------------------------------- ...