|
|
Log in / Subscribe / Register

privoxy: two denial of service flaws

Package(s):privoxy CVE #(s):CVE-2016-1982 CVE-2016-1983
Created:January 25, 2016 Updated:February 9, 2016
Description: From the Arch Linux advisory:

- CVE-2016-1982 (denial of service): A vulnerability was discovered in a way the privoxy deals with corrupted chunk-encoded content. A maliciously crafted input can result in a remote denial of service.

- CVE-2016-1983 (denial of service): A vulnerability was found in a way the privoxy processes specific client requests. A request with "Host" header empty could result in an invalid read.

Alerts:
Fedora FEDORA-2016-bc7acd24c6 privoxy 2016-02-01
Fedora FEDORA-2016-29995fbd42 privoxy 2016-02-01
Debian DSA-3460-1 privoxy 2016-01-30
Debian-LTS DLA-398-1 privoxy 2016-01-23
Arch Linux ASA-201601-27 privoxy 2016-01-25
Mageia MGASA-2016-0055 privoxy 2016-02-09
openSUSE openSUSE-SU-2016:0311-1 Privoxy 2016-02-02
openSUSE openSUSE-SU-2016:0305-1 privoxy 2016-02-02

to post comments


Copyright © 2026, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds