libproxy project records
5 published records for vendor libproxy project.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 1
- With a fix record
- 100%
- Median publish → KEV
- No record has entered KEV
Recurring classes
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer2
- CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')1
- CWE-674 Uncontrolled Recursion1
- CWE-94 Improper Control of Generation of Code ('Code Injection')1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
5 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
41Plan | CVE-2012-4504No exploit | Stack-based buffer overflow in the url::get_pac function in url.cpp in libproxy 0.4.x before 0.4.9 allows remote servers to have an unspeciflibproxy project · libproxy · CWE-119 | Critical10.0 | — | 3.5% | Nov 11, 2012 |
41Plan | CVE-2012-4505No exploit | Heap-based buffer overflow in the px_pac_reload function in lib/pac.c in libproxy 0.2.x and 0.3.x allows remote servers to have an unspecifilibproxy project · libproxy · CWE-119 | Critical10.0 | — | 3.2% | Nov 11, 2012 |
40Plan | CVE-2020-26154No exploit | url.cpp in libproxy through 0.4.15 is prone to a buffer overflow when PAC is enabled, as demonstrated by a large PAC file that is delivered libproxy project · libproxy · CWE-120 | Critical9.8 | — | 3.6% | Sep 30, 2020 |
31Monitor | CVE-2020-25219No exploit | url::recvline in url.cpp in libproxy 0.4.x through 0.4.15 allows a remote HTTP server to trigger uncontrolled recursion via a response compolibproxy project · libproxy · CWE-674 | High7.5 | — | 4.4% | Sep 9, 2020 |
31Monitor | CVE-2012-5580No exploit | Format string vulnerability in the print_proxies function in bin/proxy.c in libproxy 0.3.1 might allow context-dependent attackers to cause libproxy project · libproxy · CWE-94 | High7.5 | — | 3.1% | Oct 27, 2014 |
- CVE-2012-450441Plan
Stack-based buffer overflow in the url::get_pac function in url.cpp in libproxy 0.4.x before 0.4.9 allows remote servers to have an unspecif
CriticalCVSS 10.0No exploitEPSS 3%libproxy project · libproxyNov 11, 2012
- CVE-2012-450541Plan
Heap-based buffer overflow in the px_pac_reload function in lib/pac.c in libproxy 0.2.x and 0.3.x allows remote servers to have an unspecifi
CriticalCVSS 10.0No exploitEPSS 3%libproxy project · libproxyNov 11, 2012
- CVE-2020-2615440Plan
url.cpp in libproxy through 0.4.15 is prone to a buffer overflow when PAC is enabled, as demonstrated by a large PAC file that is delivered
CriticalCVSS 9.8No exploitEPSS 4%libproxy project · libproxySep 30, 2020
- CVE-2020-2521931Monitor
url::recvline in url.cpp in libproxy 0.4.x through 0.4.15 allows a remote HTTP server to trigger uncontrolled recursion via a response compo
HighCVSS 7.5No exploitEPSS 4%libproxy project · libproxySep 9, 2020
- CVE-2012-558031Monitor
Format string vulnerability in the print_proxies function in bin/proxy.c in libproxy 0.3.1 might allow context-dependent attackers to cause
HighCVSS 7.5No exploitEPSS 3%libproxy project · libproxyOct 27, 2014