Vulnerabilities (CVE)

Filtered by vendor Privoxy Subscribe
Total 29 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2021-20215 1 Privoxy 1 Privoxy 2024-11-21 7.8 HIGH 7.5 HIGH
A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the show-status CGI handler when memory allocations fail can lead to a system crash.
CVE-2021-20214 1 Privoxy 1 Privoxy 2024-11-21 7.8 HIGH 7.5 HIGH
A flaw was found in Privoxy in versions before 3.0.29. Memory leaks in the client-tags CGI handler when client tags are configured and memory allocations fail can lead to a system crash.
CVE-2021-20213 1 Privoxy 1 Privoxy 2024-11-21 4.3 MEDIUM 7.5 HIGH
A flaw was found in Privoxy in versions before 3.0.29. Dereference of a NULL-pointer that could result in a crash if accept-intercepted-requests was enabled, Privoxy failed to get the request destination from the Host header and a memory allocation failed.
CVE-2021-20212 1 Privoxy 1 Privoxy 2024-11-21 7.8 HIGH 7.5 HIGH
A flaw was found in Privoxy in versions before 3.0.29. Memory leak if multiple filters are executed and the last one is skipped due to a pcre error leading to a system crash.
CVE-2021-20211 1 Privoxy 1 Privoxy 2024-11-21 7.8 HIGH 7.5 HIGH
A flaw was found in Privoxy in versions before 3.0.29. Memory leak when client tags are active can cause a system crash.
CVE-2021-20210 1 Privoxy 1 Privoxy 2024-11-21 7.8 HIGH 7.5 HIGH
A flaw was found in Privoxy in versions before 3.0.29. Memory leak in the show-status CGI handler when no filter files are configured can lead to a system crash.
CVE-2021-20209 1 Privoxy 1 Privoxy 2024-11-21 5.0 MEDIUM 7.5 HIGH
A memory leak vulnerability was found in Privoxy before 3.0.29 in the show-status CGI handler when no action files are configured.
CVE-2020-35502 1 Privoxy 1 Privoxy 2024-11-21 7.8 HIGH 7.5 HIGH
A flaw was found in Privoxy in versions before 3.0.29. Memory leaks when a response is buffered and the buffer limit is reached or Privoxy is running out of memory can lead to a system crash.
CVE-2019-3699 2 Opensuse, Privoxy 3 Factory, Leap, Privoxy 2024-11-21 7.2 HIGH 7.7 HIGH
UNIX Symbolic Link (Symlink) Following vulnerability in the packaging of privoxy on openSUSE Leap 15.1, Factory allows local attackers to escalate from user privoxy to root. This issue affects: openSUSE Leap 15.1 privoxy version 3.0.28-lp151.1.1 and prior versions. openSUSE Factory privoxy version 3.0.28-2.1 and prior versions.