A memory leak vulnerability was found in Privoxy before 3.0.29 in the show-status CGI handler when no action files are configured.
The product does not sufficiently track and release allocated memory after it has been used, making the memory unavailable for reallocation and reuse.
Link | Tags |
---|---|
https://www.privoxy.org/3.0.29/user-manual/whatsnew.html | release notes vendor advisory |
https://www.privoxy.org/gitweb/?p=privoxy.git%3Ba=commit%3Bh=c62254a686 | |
https://bugzilla.redhat.com/show_bug.cgi?id=1928726 | issue tracking third party advisory patch |
https://security.gentoo.org/glsa/202107-16 | third party advisory vendor advisory |