First published: Mon Feb 01 2021(Updated: )
A flaw was found in privoxy before version 3.0.31. A memory leak when decompression fails "unexpectedly" may lead to denial of service. References: <a href="https://www.openwall.com/lists/oss-security/2021/01/31/2">https://www.openwall.com/lists/oss-security/2021/01/31/2</a>
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/privoxy | <3.0.31 | 3.0.31 |
Privoxy Privoxy | <3.0.31 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID is CVE-2021-20216.
The severity of CVE-2021-20216 is high with a CVSS score of 7.5.
The highest threat from CVE-2021-20216 is to system availability.
CVE-2021-20216 can cause a denial of service due to a memory leak when decompression fails unexpectedly.
To fix CVE-2021-20216, upgrade Privoxy to version 3.0.31 or later.