All errata/sisyphus/ALT-PU-2015-1330-1
ALT-PU-2015-1330-1

Package update privoxy in branch sisyphus

Version3.0.21-alt1
Published2015-03-27
Max severityMEDIUM
Severity:

Closed issues (1)

CVE-2013-2503
MEDIUM5.8

Privoxy before 3.0.21 does not properly handle Proxy-Authenticate and Proxy-Authorization headers in the client-server data stream, which makes it easier for remote HTTP servers to spoof the intended proxy service via a 407 (aka Proxy Authentication Required) HTTP status code.

Published: 2013-03-11Modified: 2026-04-29
CVSS 2.0MEDIUM 5.8
CVSS:2.0/AV:N/AC:M/Au:N/C:P/I:P/A:N