CVE-2021-38614

Source
https://nvd.nist.gov/vuln/detail/CVE-2021-38614
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-38614.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2021-38614
Related
Published
2021-08-12T23:15:09Z
Modified
2025-01-14T09:30:02.444488Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

Polipo through 1.1.1, when NDEBUG is used, allows a heap-based buffer overflow during parsing of a Range header. NOTE: This vulnerability only affects products that are no longer supported by the maintainer

References

Affected packages

Git / github.com/jech/polipo

Affected ranges

Type
GIT
Repo
https://github.com/jech/polipo
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Last affected

Affected versions

polipo-0.*

polipo-0.9.2
polipo-0.9.3
polipo-0.9.4
polipo-0.9.5
polipo-0.9.99.0
polipo-0.9.99.1
polipo-0.9.99.2

polipo-1.*

polipo-1.0.0
polipo-1.0.1
polipo-1.0.2
polipo-1.0.3
polipo-1.0.4
polipo-1.1.0
polipo-1.1.1

Other

polipo-20060607
polipo-20060823
polipo-20060903
polipo-20060905
polipo-20060920
polipo-20061116
polipo-20061218
polipo-20070824
polipo-20070915
polipo-20071001
polipo-20071002
polipo-20080103
polipo-20080106
polipo-20080106-2
polipo-20080524
polipo-20080907
polipo-20091115
polipo-20140107
polipo-syslog-20070909