Known Vulnerabilities for products from Privoxy

Listed below are 20 of the newest known vulnerabilities associated with the vendor "Privoxy".

These CVEs are retrieved based on exact matches on listed vendor information (CPE data) as well as a keyword search to ensure the newest vulnerabilities with no officially listed vendor information are still displayed.

Data on known vulnerable products is also displayed based on information from known CPEs, each product links to its respective vulnerability page.

Known Vulnerabilities

CVE Shortened Description Severity Publish Date Last Modified
CVE-2021-44543 json An XSS vulnerability was found in Privoxy which was fixed in cgi_error_no_template() by encode the template name when Privoxy... 6.1 - MEDIUM 2021-12-23 2023-11-07
CVE-2021-44542 json A memory leak vulnerability was found in Privoxy when handling errors. 7.5 - HIGH 2021-12-23 2023-11-07
CVE-2021-44541 json A vulnerability was found in Privoxy which was fixed in process_encrypted_request_headers() by freeing header memory when fai... 7.5 - HIGH 2021-12-23 2023-11-07
CVE-2021-44540 json A vulnerability was found in Privoxy which was fixed in get_url_spec_param() by freeing memory of compiled pattern spec befor... 7.5 - HIGH 2021-12-23 2023-11-07
CVE-2021-20276 json A flaw was found in privoxy before 3.0.32. Invalid memory access with an invalid pattern passed to pcre_compile() may lead to... 7.5 - HIGH 2021-03-09 2022-08-05
CVE-2021-20275 json A flaw was found in privoxy before 3.0.32. A invalid read of size two may occur in chunked_body_is_complete() leading to deni... 7.5 - HIGH 2021-03-09 2022-08-05
CVE-2021-20274 json A flaw was found in privoxy before 3.0.32. A crash may occur due a NULL-pointer dereference when the socks server misbehaves. 7.5 - HIGH 2021-03-09 2021-12-14
CVE-2021-20273 json A flaw was found in privoxy before 3.0.32. A crash can occur via a crafted CGI request if Privoxy is toggled off. 7.5 - HIGH 2021-03-09 2021-12-08
CVE-2021-20272 json A flaw was found in privoxy before 3.0.32. An assertion failure could be triggered with a crafted CGI request leading to serv... 7.5 - HIGH 2021-03-09 2021-12-07
CVE-2021-20217 json A flaw was found in Privoxy in versions before 3.0.31. An assertion failure triggered by a crafted CGI request may lead to de... 7.5 - HIGH 2021-03-25 2021-12-14
CVE-2021-20216 json A flaw was found in Privoxy in versions before 3.0.31. A memory leak that occurs when decompression fails unexpectedly may le... 7.5 - HIGH 2021-03-25 2022-08-05
CVE-2021-20215 json A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the show-status CGI handler when memory allocations fa... 7.5 - HIGH 2021-03-25 2021-12-14
CVE-2021-20214 json A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the client-tags CGI handler when client tags are confi... 7.5 - HIGH 2021-03-25 2021-12-14
CVE-2021-20213 json A flaw was found in Privoxy in versions before 3.0.29. Dereference of a NULL-pointer that could result in a crash if accept-i... 7.5 - HIGH 2021-03-25 2021-12-14
CVE-2021-20212 json A flaw was found in Privoxy in versions before 3.0.29. Memory leak if multiple filters are executed and the last one is skipp... 7.5 - HIGH 2021-03-25 2021-12-14
CVE-2021-20211 json A flaw was found in Privoxy in versions before 3.0.29. Memory leak when client tags are active can cause a system crash. 7.5 - HIGH 2021-03-25 2021-12-14
CVE-2021-20210 json A flaw was found in Privoxy in versions before 3.0.29. Memory leak in the show-status CGI handler when no filter files are co... 7.5 - HIGH 2021-03-25 2021-12-10
CVE-2021-20209 json A memory leak vulnerability was found in Privoxy before 3.0.29 in the show-status CGI handler when no action files are config... 7.5 - HIGH 2021-05-25 2023-11-07
CVE-2020-35502 json A flaw was found in Privoxy in versions before 3.0.29. Memory leaks when a response is buffered and the buffer limit is reach... 7.5 - HIGH 2021-03-25 2021-12-10
CVE-2019-3699 json UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of privoxy on openSUSE Leap 15.1, Factory allows local ... 7.8 - HIGH 2020-01-24 2021-09-14

Known software with vulnerabilities from Privoxy

Type Vendor Product Version
ApplicationPrivoxyPrivoxy2.9.20