========================================================================= Ubuntu Security Notice USN-4702-1 January 25, 2021 pound vulnerabilities ========================================================================= A security issue affects these releases of Ubuntu and its derivatives: - Ubuntu 16.04 LTS Summary: Several security issues were fixed in pound. Software Description: - pound: reverse proxy, load balancer and HTTPS front-end for Web servers Details: It was discovered that Pound incorrectly handled certain HTTP requests A remote attacker could use it to retrieve some sensitive information. (CVE-2016-10711, CVE-2018-21245) Update instructions: The problem can be corrected by updating your system to the following package versions: Ubuntu 16.04 LTS: pound 2.6-6.1ubuntu0.1 In general, a standard system update will make all the necessary changes. References: https://usn.ubuntu.com/4702-1 CVE-2016-10711, CVE-2018-21245 Package Information: https://launchpad.net/ubuntu/+source/pound/2.6-6.1ubuntu0.1