{"id":"DEBIAN-CVE-2012-4505","details":"Heap-based buffer overflow in the px_pac_reload function in lib/pac.c in libproxy 0.2.x and 0.3.x allows remote servers to have an unspecified impact via a crafted Content-Length size in an HTTP response header for a proxy.pac file request, a different vulnerability than CVE-2012-4504.","modified":"2026-09-23T06:47:39.458479417Z","published":"2012-11-11T13:00:49.963Z","upstream":["CVE-2012-4505"],"references":[{"type":"ADVISORY","url":"https://security-tracker.debian.org/tracker/CVE-2012-4505"}],"affected":[{"package":{"name":"libproxy","ecosystem":"Debian:12","purl":"pkg:deb/debian/libproxy?arch=source&distro=bookworm"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.3.1-5.1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2012-4505.json"}},{"package":{"name":"libproxy","ecosystem":"Debian:13","purl":"pkg:deb/debian/libproxy?arch=source&distro=trixie"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.3.1-5.1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2012-4505.json"}},{"package":{"name":"libproxy","ecosystem":"Debian:14","purl":"pkg:deb/debian/libproxy?arch=source&distro=forky"},"ranges":[{"type":"ECOSYSTEM","events":[{"introduced":"0"},{"fixed":"0.3.1-5.1"}]}],"ecosystem_specific":{"urgency":"not yet assigned"},"database_specific":{"source":"https://storage.googleapis.com/debian-osv/debian-cve-osv/DEBIAN-CVE-2012-4505.json"}}],"schema_version":"1.9.0"}