First published: Thu Dec 23 2021(Updated: )
A vulnerability was found in Privoxy which was fixed in get_url_spec_param() by freeing memory of compiled pattern spec before bailing.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Privoxy Privoxy | <3.0.33 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-44540 is a vulnerability found in Privoxy that allows an attacker to free memory of a compiled pattern spec before bailing.
CVE-2021-44540 has a severity rating of high with a score of 7.5.
Privoxy version 3.0.33 and earlier are affected by CVE-2021-44540.
To fix CVE-2021-44540, update Privoxy to version 3.0.34 or a later release.
More information about CVE-2021-44540 can be found at the following references: [link 1], [link 2].