First published: Tue Feb 03 2015(Updated: )
parsers.c in Privoxy before 3.0.23 allows remote attackers to cause a denial of service (invalid read and crash) via vectors related to an HTTP time header.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Debian | =7.0 | |
Privoxy | <=3.0.22 | |
SUSE Linux | =13.1 | |
SUSE Linux | =13.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-1382 has a medium severity rating due to its potential to cause denial of service.
To fix CVE-2015-1382, upgrade to Privoxy version 3.0.23 or later.
Privoxy versions prior to 3.0.23 are affected by CVE-2015-1382.
CVE-2015-1382 can lead to an invalid read and crashing of the application when processing an HTTP time header.
Yes, Debian 7.0 and openSUSE versions 13.1 and 13.2 are affected by CVE-2015-1382.