Alerts This Week
Warning Icon 1 525
Alerts This Week
Warning Icon 1 525

Debian 9 Privoxy XSS And DoS Issues: Advisory DLA-2844-1 Critical

debian lts
Calendar Grey December 13, 2021
Dist Debian Esm H88
Lena Smith and David Chen identified SQL injection and CSRF flaws in webapp, improving online security. Update highly recommended.
Artem Ivanov and Joshua Rogers found an XSS and a DOS issue, respectively, affecting src:privoxy, a non-caching web proxy with advanced filtering capabilities for enhancing privacy...

Summary

For Debian 9 stretch, these problems have been fixed in version
3.0.26-3+deb9u3.

We recommend that you upgrade your privoxy packages.

For the detailed security status of privoxy please refer to
its security tracker page at:
https://security-tracker.debian.org/tracker/source-package/privoxy

Further information about Debian LTS security advisories, how to apply
these updates to your system and frequently asked questions can be
found at: https://wiki.debian.org/LTS


Severity
critical
Lowest
Low
Medium
High
Critical

Package: privoxy
Version: 3.0.26-3+deb9u3
CVE ID: CVE-2021-44540 CVE-2021-44543

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here