First published: Mon Mar 08 2021(Updated: )
A flaw was found in privoxy before 3.0.32. Invalid memory access with an invalid pattern passed to pcre_compile() may lead to denial of service.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Privoxy Privoxy | <3.0.32 | |
Debian Debian Linux | =9.0 | |
redhat/privoxy | <3.0.32 | 3.0.32 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-20276 is a vulnerability found in Privoxy before version 3.0.32 that allows for invalid memory access, potentially leading to a denial of service.
The severity of CVE-2021-20276 is high, with a severity score of 7.5.
Privoxy versions up to but excluding 3.0.32 and Debian Linux version 9.0 are affected by CVE-2021-20276.
To fix CVE-2021-20276, users should update Privoxy to version 3.0.32 or newer, or upgrade to a later version of Debian Linux.
The CWE ID for CVE-2021-20276 is CWE-119.