DescriptionPotential leak of left-over heap data if custom error page templates containing special non-standard variables are used. Tinyproxy commit 84f203f and earlier use uninitialized buffers in process_request() function.
Overall state of this security issue: Does not affect SUSE products
This issue is currently rated as having important severity.
|National Vulnerability Database||SUSE|
List of released packages
|Product(s)||Fixed package version(s)||References|
|openSUSE Tumbleweed|| ||Patchnames: |
openSUSE Tumbleweed GA tinyproxy-1.11.1-2.1
SUSE Timeline for this CVECVE page created: Tue Sep 20 02:00:44 2022
CVE page last modified: Thu Sep 7 12:01:48 2023