CyberSec.Space Logo
Back to CVE Browser

CVE-2020-26154

CRITICAL
9.8
CVSS Severity Score
EPSS Score0.0520%
EPSS Percentile32.68th
PublishedSep 30, 2020
Last ModifiedNov 21, 2024

Vulnerability Description

url.cpp in libproxy through 0.4.15 is prone to a buffer overflow when PAC is enabled, as demonstrated by a large PAC file that is delivered without a Content-length header.

Affected Platforms (CPE)

πŸ“¦
Libproxy Project

Libproxy

<= 0.4.15
πŸ’»
Fedoraproject

Fedora

= 32
πŸ’»
Fedoraproject

Fedora

= 33
πŸ’»
Debian

Debian Linux

= 9.0
πŸ’»
Debian

Debian Linux

= 10.0
πŸ’»
Opensuse

Leap

= 15.1
πŸ’»
Opensuse

Leap

= 15.2

References & Advisories

Related Vulnerabilities