3.0.32. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-250d2ca9e6 2021-03-19 19:51:22.363544 --------------------------------------------------------------------------------Name : privoxy Product : Fedora 34 Version : 3.0.32 Release : 1.fc34 URL : http://www.privoxy.org/ Summary : Privacy enhancing proxy Description : Privoxy is a web proxy with advanced filtering capabilities for protecting privacy, filtering web page content, managing cookies, controlling access, and removing ads, banners, pop-ups and other obnoxious Internet junk. Privoxy has a very flexible configuration and can be customized to suit individual needs and tastes. Privoxy has application for both stand-alone systems and multi-user networks. Privoxy is based on the Internet Junkbuster. --------------------------------------------------------------------------------Update Information: 3.0.32 --------------------------------------------------------------------------------ChangeLog: * Mon Mar 1 2021 Gwyn Ciesla - 3.0.32-1 - 3.0.32 --------------------------------------------------------------------------------References: [ 1 ] Bug #1933424 - privoxy-3.0.32 is available https://bugzilla.redhat.com/show_bug.cgi?id=1933424 [ 2 ] Bug #1935975 - privoxy: Multiple security issues fixed in privoxy 3.0.32 [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1935975 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-250d2ca9e6' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
3.0.32. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-5fb8bd8258 2021-03-10 00:41:43.224843 --------------------------------------------------------------------------------Name : privoxy Product : Fedora 33 Version : 3.0.32 Release : 1.fc33 URL : http://www.privoxy.org/ Summary : Privacy enhancing proxy Description : Privoxy is a web proxy with advanced filtering capabilities for protecting privacy, filtering web page content, managing cookies, controlling access, and removing ads, banners, pop-ups and other obnoxious Internet junk. Privoxy has a very flexible configuration and can be customized to suit individual needs and tastes. Privoxy has application for both stand-alone systems and multi-user networks. Privoxy is based on the Internet Junkbuster. --------------------------------------------------------------------------------Update Information: 3.0.32 --------------------------------------------------------------------------------ChangeLog: * Mon Mar 1 2021 Gwyn Ciesla - 3.0.32-1 - 3.0.32 --------------------------------------------------------------------------------References: [ 1 ] Bug #1933424 - privoxy-3.0.32 is available https://bugzilla.redhat.com/show_bug.cgi?id=1933424 [ 2 ] Bug #1935975 - privoxy: Multiple security issues fixed in privoxy 3.0.32 [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1935975 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-5fb8bd8258' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
3.0.32. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-85087f8a70 2021-03-10 00:25:11.065330 --------------------------------------------------------------------------------Name : privoxy Product : Fedora 32 Version : 3.0.32 Release : 1.fc32 URL : http://www.privoxy.org/ Summary : Privacy enhancing proxy Description : Privoxy is a web proxy with advanced filtering capabilities for protecting privacy, filtering web page content, managing cookies, controlling access, and removing ads, banners, pop-ups and other obnoxious Internet junk. Privoxy has a very flexible configuration and can be customized to suit individual needs and tastes. Privoxy has application for both stand-alone systems and multi-user networks. Privoxy is based on the Internet Junkbuster. --------------------------------------------------------------------------------Update Information: 3.0.32 --------------------------------------------------------------------------------ChangeLog: * Mon Mar 1 2021 Gwyn Ciesla - 3.0.32-1 - 3.0.32 --------------------------------------------------------------------------------References: [ 1 ] Bug #1933424 - privoxy-3.0.32 is available https://bugzilla.redhat.com/show_bug.cgi?id=1933424 [ 2 ] Bug #1935975 - privoxy: Multiple security issues fixed in privoxy 3.0.32 [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1935975 --------------------------------------------------------------------------------This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-85087f8a70' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be foundat https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
3.0.31, fixes for OVE-20210128-0001 and OVE-20210130-0001. --------------------------------------------------------------------------------Fedora Update Notification FEDORA-2021-6fe9346693 2021-02-10 01:18:31.293222 --------------------------------------------------------------------------------Name : privoxy Product : Fedora 33 Version : 3.0.31 Release : 1.fc33 URL : http://www.privoxy.org/ Summary : Privacy enhancing proxy Description : Privoxy is a web proxy with advanced filtering capabilities for protecting privacy, filtering web page content, managing cookies, controlling access, and removing ads, banners, pop-ups and other obnoxious Internet junk. Privoxy has a very flexible configuration and can be customized to suit individual needs and tastes. Privoxy has application for both stand-alone systems and multi-user networks. Privoxy is based on the Internet Junkbuster. --------------------------------------------------------------------------------Update Information: 3.0.31, fixes for OVE-20210128-0001 and OVE-20210130-0001 --------------------------------------------------------------------------------ChangeLog: * Mon Feb 1 2021 Gwyn Ciesla - 3.0.31-1 - 3.0.31 * Wed Jan 27 2021 Fedora Release Engineering - 3.0.29-2 - Rebuilt for https://fedoraproject.org/wiki/Fedora_34_Mass_Rebuild --------------------------------------------------------------------------------References: [ 1 ] Bug #1922710 - privoxy-3.0.31 is available https://bugzilla.redhat.com/show_bug.cgi?id=1922710 [ 2 ] Bug #1923253 - CVE-2021-20217 privoxy: Assertion failure triggered by a crafted CGI request [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1923253 [ 3 ] Bug #1923258 - CVE-2021-20216 privoxy: Memory leak when decompression fails [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1923258 --------------------------------------------------------------------------------This update can be installed with the "dnf"update program. Use su -c 'dnf upgrade --advisory FEDORA-2021-6fe9346693' at the command line. For more information, refer to the dnf documentation available at https://dnf.readthedocs.io/en/latest/command_ref.html All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ --------------------------------------------------------------------------------_______________________________________________ package-announce mailing list --
Patches for CVE-2016-1982,3. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-bc7acd24c6 2016-02-01 02:27:04.521626 -------------------------------------------------------------------------------- Name : privoxy Product : Fedora 22 Version : 3.0.23 Release : 3.fc22 URL : http://www.privoxy.org/ Summary : Privacy enhancing proxy Description : Privoxy is a web proxy with advanced filtering capabilities for protecting privacy, filtering web page content, managing cookies, controlling access, and removing ads, banners, pop-ups and other obnoxious Internet junk. Privoxy has a very flexible configuration and can be customized to suit individual needs and tastes. Privoxy has application for both stand-alone systems and multi-user networks. Privoxy is based on the Internet Junkbuster. -------------------------------------------------------------------------------- Update Information: Patches for CVE-2016-1982,3 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1300975 - CVE-2016-1983 privoxy: invalid read via empty host header in client request [epel-7] https://bugzilla.redhat.com/show_bug.cgi?id=1300975 [ 2 ] Bug #1300974 - CVE-2016-1983 privoxy: invalid read via empty host header in client request [epel-6] https://bugzilla.redhat.com/show_bug.cgi?id=1300974 [ 3 ] Bug #1300969 - CVE-2016-1982 privoxy: invalid reads in case of corrupt chunk-encoded content [epel-7] https://bugzilla.redhat.com/show_bug.cgi?id=1300969 [ 4 ] Bug #1300968 - CVE-2016-1982 privoxy: invalid reads in case of corrupt chunk-encoded content [epel-6] https://bugzilla.redhat.com/show_bug.cgi?id=1300968 [ 5 ] Bug #1300973 - CVE-2016-1983 privoxy: invalid read via empty host header in client request [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1300973 [ 6 ] Bug #1300967 - CVE-2016-1982 privoxy: invalid reads in case of corruptchunk-encoded content [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1300967 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update privoxy' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
Patches for CVE-2016-1982,3. -------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2016-29995fbd42 2016-01-31 22:59:56.628927 -------------------------------------------------------------------------------- Name : privoxy Product : Fedora 23 Version : 3.0.23 Release : 3.fc23 URL : http://www.privoxy.org/ Summary : Privacy enhancing proxy Description : Privoxy is a web proxy with advanced filtering capabilities for protecting privacy, filtering web page content, managing cookies, controlling access, and removing ads, banners, pop-ups and other obnoxious Internet junk. Privoxy has a very flexible configuration and can be customized to suit individual needs and tastes. Privoxy has application for both stand-alone systems and multi-user networks. Privoxy is based on the Internet Junkbuster. -------------------------------------------------------------------------------- Update Information: Patches for CVE-2016-1982,3 -------------------------------------------------------------------------------- References: [ 1 ] Bug #1300975 - CVE-2016-1983 privoxy: invalid read via empty host header in client request [epel-7] https://bugzilla.redhat.com/show_bug.cgi?id=1300975 [ 2 ] Bug #1300974 - CVE-2016-1983 privoxy: invalid read via empty host header in client request [epel-6] https://bugzilla.redhat.com/show_bug.cgi?id=1300974 [ 3 ] Bug #1300969 - CVE-2016-1982 privoxy: invalid reads in case of corrupt chunk-encoded content [epel-7] https://bugzilla.redhat.com/show_bug.cgi?id=1300969 [ 4 ] Bug #1300968 - CVE-2016-1982 privoxy: invalid reads in case of corrupt chunk-encoded content [epel-6] https://bugzilla.redhat.com/show_bug.cgi?id=1300968 [ 5 ] Bug #1300973 - CVE-2016-1983 privoxy: invalid read via empty host header in client request [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1300973 [ 6 ] Bug #1300967 - CVE-2016-1982 privoxy: invalid reads in case of corruptchunk-encoded content [fedora-all] https://bugzilla.redhat.com/show_bug.cgi?id=1300967 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update privoxy' at the command line. For more information, refer to "Managing Software with yum", available at . All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/security/ -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list
Multiple use-after-frees were discovered in Privoxy, a privacy-enhancing HTTP proxy. For the stable distribution (wheezy), this problem has been fixed in . -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------- Debian Security Advisory DSA-3133-1
Get the latest Linux and open source security news straight to your inbox.