url.cpp in libproxy through 0.4.15 is prone to a buffer overflow when PAC is enabled, as demonstrated by a large PAC file that is delivered without a Content-length header.
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy-cil-dev" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy-dev" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy-tools" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy-tools-dbgsym" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy0.4-cil" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy1-plugin-gsettings" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy1-plugin-gsettings-dbgsym" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy1-plugin-kconfig" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy1-plugin-kconfig-dbgsym" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy1-plugin-networkmanager" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy1-plugin-networkmanager-dbgsym" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy1-plugin-webkit" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy1-plugin-webkit-dbgsym" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy1v5" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "libproxy1v5-dbgsym" }, { "binary_version": "0.4.11-5ubuntu1.2", "binary_name": "python-libproxy" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy-cil-dev" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy-dev" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy-tools" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy-tools-dbgsym" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy0.4-cil" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy1-plugin-gsettings" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy1-plugin-gsettings-dbgsym" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy1-plugin-kconfig" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy1-plugin-kconfig-dbgsym" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy1-plugin-networkmanager" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy1-plugin-networkmanager-dbgsym" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy1-plugin-webkit" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy1-plugin-webkit-dbgsym" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy1v5" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "libproxy1v5-dbgsym" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "python-libproxy" }, { "binary_version": "0.4.15-1ubuntu0.2", "binary_name": "python3-libproxy" } ] }
{ "availability": "No subscription required", "ubuntu_priority": "medium", "binaries": [ { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy-cil-dev" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy-dev" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy-tools" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy-tools-dbgsym" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy0.4-cil" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy1-plugin-gsettings" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy1-plugin-gsettings-dbgsym" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy1-plugin-kconfig" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy1-plugin-kconfig-dbgsym" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy1-plugin-mozjs" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy1-plugin-mozjs-dbgsym" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy1-plugin-networkmanager" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy1-plugin-networkmanager-dbgsym" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy1-plugin-webkit" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy1-plugin-webkit-dbgsym" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy1v5" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "libproxy1v5-dbgsym" }, { "binary_version": "0.4.15-10ubuntu1.2", "binary_name": "python3-libproxy" } ] }