CVE-2012-4504

Stack-based buffer overflow in the url::get_pac function in url.cpp in libproxy 0.4.x before 0.4.9 allows remote servers to have an unspecified impact via a large proxy.pac file.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:libproxy_project:libproxy:0.4.0:*:*:*:*:*:*:*
cpe:2.3:a:libproxy_project:libproxy:0.4.1:*:*:*:*:*:*:*
cpe:2.3:a:libproxy_project:libproxy:0.4.2:*:*:*:*:*:*:*
cpe:2.3:a:libproxy_project:libproxy:0.4.3:*:*:*:*:*:*:*
cpe:2.3:a:libproxy_project:libproxy:0.4.5:*:*:*:*:*:*:*
cpe:2.3:a:libproxy_project:libproxy:0.4.6:*:*:*:*:*:*:*
cpe:2.3:a:libproxy_project:libproxy:0.4.7:*:*:*:*:*:*:*
cpe:2.3:a:libproxy_project:libproxy:0.4.8:*:*:*:*:*:*:*

History

21 Nov 2024, 01:43

Type Values Removed Values Added
References () http://code.google.com/p/libproxy/source/detail?r=853 - Patch () http://code.google.com/p/libproxy/source/detail?r=853 - Patch
References () http://lists.opensuse.org/opensuse-updates/2012-10/msg00065.html - () http://lists.opensuse.org/opensuse-updates/2012-10/msg00065.html -
References () http://secunia.com/advisories/51048 - Vendor Advisory () http://secunia.com/advisories/51048 - Vendor Advisory
References () http://www.openwall.com/lists/oss-security/2012/10/12/1 - () http://www.openwall.com/lists/oss-security/2012/10/12/1 -
References () http://www.openwall.com/lists/oss-security/2012/10/12/5 - () http://www.openwall.com/lists/oss-security/2012/10/12/5 -
References () http://www.openwall.com/lists/oss-security/2012/10/16/3 - () http://www.openwall.com/lists/oss-security/2012/10/16/3 -
References () http://www.securityfocus.com/bid/55909 - () http://www.securityfocus.com/bid/55909 -
References () http://www.ubuntu.com/usn/USN-1629-1 - () http://www.ubuntu.com/usn/USN-1629-1 -
References () https://bugzilla.redhat.com/show_bug.cgi?id=864417 - () https://bugzilla.redhat.com/show_bug.cgi?id=864417 -
References () https://exchange.xforce.ibmcloud.com/vulnerabilities/79249 - () https://exchange.xforce.ibmcloud.com/vulnerabilities/79249 -
References () https://groups.google.com/forum/?fromgroups=#%21topic/libproxy/VxZ8No7mT0E - () https://groups.google.com/forum/?fromgroups=#%21topic/libproxy/VxZ8No7mT0E -

07 Nov 2023, 02:11

Type Values Removed Values Added
References
  • {'url': 'https://groups.google.com/forum/?fromgroups=#!topic/libproxy/VxZ8No7mT0E', 'name': 'https://groups.google.com/forum/?fromgroups=#!topic/libproxy/VxZ8No7mT0E', 'tags': [], 'refsource': 'CONFIRM'}
  • () https://groups.google.com/forum/?fromgroups=#%21topic/libproxy/VxZ8No7mT0E -

Information

Published : 2012-11-11 13:00

Updated : 2025-04-11 00:51


NVD link : CVE-2012-4504

Mitre link : CVE-2012-4504

CVE.ORG link : CVE-2012-4504


JSON object : View

Products Affected

libproxy_project

  • libproxy
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer