Advisories ยป MGASA-2020-0399

Updated libproxy packages fix a security vulnerability

Publication date: 08 Nov 2020
Modification date: 08 Nov 2020
Type: security
Affected Mageia releases : 7
CVE: CVE-2020-26154

Description

url.cpp in libproxy through 0.4.15 is prone to a buffer overflow when PAC is
enabled, as demonstrated by a large PAC file that is delivered without a
Content-length header. (CVE-2020-26154)
                

References

SRPMS

7/core