CVE-2021-20273 - log back

CVE-2021-20273 edited at 06 Mar 2021 09:27:09
References
- https://bugzilla.redhat.com/show_bug.cgi?id=1935974
+ https://www.openwall.com/lists/oss-security/2021/03/06/2
https://www.privoxy.org/announce.txt
https://www.privoxy.org/gitweb/?p=privoxy.git;a=commitdiff;h=e711c505c4830ab271938d61af90a2075523f058
CVE-2021-20273 edited at 05 Mar 2021 21:13:42
References
https://bugzilla.redhat.com/show_bug.cgi?id=1935974
https://www.privoxy.org/announce.txt
- https://www.privoxy.org/gitweb/?p=privoxy.git;a=commitdiff;h=85817cc55b9829e6c20db40d3a93b8380618463d
+ https://www.privoxy.org/gitweb/?p=privoxy.git;a=commitdiff;h=e711c505c4830ab271938d61af90a2075523f058
CVE-2021-20273 edited at 05 Mar 2021 21:12:29
References
https://bugzilla.redhat.com/show_bug.cgi?id=1935974
https://www.privoxy.org/announce.txt
- https://www.privoxy.org/gitweb/?p=privoxy.git;a=commitdiff;h=e711c505c4830ab271938d61af90a2075523f058
https://www.privoxy.org/gitweb/?p=privoxy.git;a=commitdiff;h=85817cc55b9829e6c20db40d3a93b8380618463d
CVE-2021-20273 edited at 05 Mar 2021 21:12:22
References
https://bugzilla.redhat.com/show_bug.cgi?id=1935974
https://www.privoxy.org/announce.txt
https://www.privoxy.org/gitweb/?p=privoxy.git;a=commitdiff;h=e711c505c4830ab271938d61af90a2075523f058
https://www.privoxy.org/gitweb/?p=privoxy.git;a=commitdiff;h=85817cc55b9829e6c20db40d3a93b8380618463d
CVE-2021-20273 edited at 05 Mar 2021 21:12:16
References
https://bugzilla.redhat.com/show_bug.cgi?id=1935974
https://www.privoxy.org/announce.txt
https://www.privoxy.org/gitweb/?p=privoxy.git;a=commitdiff;h=e711c505c4830ab271938d61af90a2075523f058
+ https://www.privoxy.org/gitweb/?p=privoxy.git;a=commitdiff;h=85817cc55b9829e6c20db40d3a93b8380618463d
CVE-2021-20273 edited at 05 Mar 2021 21:11:23
Description
- A security issue was found in Privoxy before version 3.0.32. Overrule invalid image types. Invalid image types in a crafted CGI request could lead to a crash, resulting in denial of service.
+ A security issue was found in Privoxy before version 3.0.32. Invalid image types in a crafted CGI request could lead to a crash, resulting in denial of service.
CVE-2021-20273 edited at 05 Mar 2021 21:10:46
References
https://bugzilla.redhat.com/show_bug.cgi?id=1935974
https://www.privoxy.org/announce.txt
- https://www.privoxy.org/gitweb/?p=privoxy.git;a=commitdiff;h=2256d7b4d67dd9c364386877d5af59943433458b
+ https://www.privoxy.org/gitweb/?p=privoxy.git;a=commitdiff;h=e711c505c4830ab271938d61af90a2075523f058
Notes
CVE-2021-20273 edited at 05 Mar 2021 21:09:47
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Remote
Type
- Unknown
+ Denial of service
Description
+ A security issue was found in Privoxy before version 3.0.32. Overrule invalid image types. Invalid image types in a crafted CGI request could lead to a crash, resulting in denial of service.
References
+ https://bugzilla.redhat.com/show_bug.cgi?id=1935974
+ https://www.privoxy.org/announce.txt
+ https://www.privoxy.org/gitweb/?p=privoxy.git;a=commitdiff;h=2256d7b4d67dd9c364386877d5af59943433458b
CVE-2021-20273 created at 05 Mar 2021 21:03:53