CVE-2012-3505: Banu Tinyproxy

Medium severity, CVSS 5.0. EPSS: 7.3% chance of exploitation in the next 30 days.

Tinyproxy 1.8.3 and earlier allows remote attackers to cause a denial of service (CPU and memory consumption) via (1) a large number of headers or (2) a large number of forged headers that trigger hash collisions predictably. bucket.

Affected products

  • Banu Tinyproxy: up to and including 1.8.3; version 1.5.0 only; version 1.5.1 only; version 1.5.2 only; version 1.5.3 only; version 1.6.0 only; …

Published 2012-10-09. Last modified 2026-06-16.