url.cpp in libproxy through 0.4.15 is prone to a buffer overflow when PAC is enabled, as demonstrated by a large PAC file that is delivered without a Content-length header.
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libproxy-cil-dev",
"binary_version": "0.4.11-5ubuntu1.2"
},
{
"binary_name": "libproxy-dev",
"binary_version": "0.4.11-5ubuntu1.2"
},
{
"binary_name": "libproxy-tools",
"binary_version": "0.4.11-5ubuntu1.2"
},
{
"binary_name": "libproxy0.4-cil",
"binary_version": "0.4.11-5ubuntu1.2"
},
{
"binary_name": "libproxy1-plugin-gsettings",
"binary_version": "0.4.11-5ubuntu1.2"
},
{
"binary_name": "libproxy1-plugin-kconfig",
"binary_version": "0.4.11-5ubuntu1.2"
},
{
"binary_name": "libproxy1-plugin-networkmanager",
"binary_version": "0.4.11-5ubuntu1.2"
},
{
"binary_name": "libproxy1-plugin-webkit",
"binary_version": "0.4.11-5ubuntu1.2"
},
{
"binary_name": "libproxy1v5",
"binary_version": "0.4.11-5ubuntu1.2"
},
{
"binary_name": "python-libproxy",
"binary_version": "0.4.11-5ubuntu1.2"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libproxy-cil-dev",
"binary_version": "0.4.15-1ubuntu0.2"
},
{
"binary_name": "libproxy-dev",
"binary_version": "0.4.15-1ubuntu0.2"
},
{
"binary_name": "libproxy-tools",
"binary_version": "0.4.15-1ubuntu0.2"
},
{
"binary_name": "libproxy0.4-cil",
"binary_version": "0.4.15-1ubuntu0.2"
},
{
"binary_name": "libproxy1-plugin-gsettings",
"binary_version": "0.4.15-1ubuntu0.2"
},
{
"binary_name": "libproxy1-plugin-kconfig",
"binary_version": "0.4.15-1ubuntu0.2"
},
{
"binary_name": "libproxy1-plugin-networkmanager",
"binary_version": "0.4.15-1ubuntu0.2"
},
{
"binary_name": "libproxy1-plugin-webkit",
"binary_version": "0.4.15-1ubuntu0.2"
},
{
"binary_name": "libproxy1v5",
"binary_version": "0.4.15-1ubuntu0.2"
},
{
"binary_name": "python-libproxy",
"binary_version": "0.4.15-1ubuntu0.2"
},
{
"binary_name": "python3-libproxy",
"binary_version": "0.4.15-1ubuntu0.2"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "libproxy-cil-dev",
"binary_version": "0.4.15-10ubuntu1.2"
},
{
"binary_name": "libproxy-dev",
"binary_version": "0.4.15-10ubuntu1.2"
},
{
"binary_name": "libproxy-tools",
"binary_version": "0.4.15-10ubuntu1.2"
},
{
"binary_name": "libproxy0.4-cil",
"binary_version": "0.4.15-10ubuntu1.2"
},
{
"binary_name": "libproxy1-plugin-gsettings",
"binary_version": "0.4.15-10ubuntu1.2"
},
{
"binary_name": "libproxy1-plugin-kconfig",
"binary_version": "0.4.15-10ubuntu1.2"
},
{
"binary_name": "libproxy1-plugin-mozjs",
"binary_version": "0.4.15-10ubuntu1.2"
},
{
"binary_name": "libproxy1-plugin-networkmanager",
"binary_version": "0.4.15-10ubuntu1.2"
},
{
"binary_name": "libproxy1-plugin-webkit",
"binary_version": "0.4.15-10ubuntu1.2"
},
{
"binary_name": "libproxy1v5",
"binary_version": "0.4.15-10ubuntu1.2"
},
{
"binary_name": "python3-libproxy",
"binary_version": "0.4.15-10ubuntu1.2"
}
]
}