5
CVSSv2

CVE-2009-2426

Published: 10/07/2009 Updated: 17/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The connection_edge_process_relay_cell_not_open function in src/or/relay.c in Tor 0.2.x prior to 0.2.0.35 and 0.1.x prior to 0.1.2.8-beta allows exit relays to have an unspecified impact by causing controllers to accept DNS responses that redirect to an internal IP address via unknown vectors. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

tor tor 0.1.1.1 alpha

tor tor 0.1.1.6

tor tor 0.1.1.9

tor tor 0.1.2.1 alpha-cvs

tor tor 0.1.0.18

tor tor 0.1.1.23

tor tor 0.2.0.11

tor tor 0.1.0.7

tor tor 0.1.1.19

tor tor 0.2.0.22

tor tor 0.2.0.19

tor tor 0.1.0.10

tor tor 0.2.0.31

tor tor 0.2.0.14

tor tor 0.1.0.8

tor tor 0.2.0.28

tor tor 0.1.0.12

tor tor 0.1.2.5

tor tor 0.1.1.26

tor tor 0.2.0.17

tor tor 0.2.0.25

tor tor 0.1.1.3 alpha

tor tor 0.1.1.17

tor tor 0.1.0.5

tor tor 0.1.0.2

tor tor 0.1.0.1

tor tor 0.2.0.26

tor tor 0.2.0.12

tor tor 0.1.1.2

tor tor 0.2.0.3

tor tor 0.1.2.6

tor tor 0.2.0.7

tor tor 0.1.1.8

tor tor 0.2.0.18

tor tor 0.1.1.5

tor tor 0.2.0.4

tor tor 0.1.0.13

tor tor 0.1.0.19

tor tor 0.2.0.27

tor tor 0.1.0.3

tor tor 0.1.1.10 alpha

tor tor 0.1.0.14

tor tor 0.1.1.12

tor tor 0.1.1.16

tor tor 0.2.0.15

tor tor 0.2.0.9

tor tor 0.1.1.18

tor tor 0.1.1.15

tor tor 0.2.0.2

tor tor 0.1.1.4 alpha

tor tor 0.1.1.21

tor tor 0.1.2.4

tor tor 0.2.0.8

tor tor 0.1.0.15

tor tor 0.1.2.7

tor tor 0.1.1.14

tor tor 0.2.0.24

tor tor 0.1.2.3

tor tor 0.1.0.6

tor tor 0.2.0.33

tor tor 0.2.0.34

tor tor 0.1.1.3

tor tor 0.1.1.7 alpha

tor tor 0.2.0.21

tor tor 0.1.1.6 alpha

tor tor 0.1.0.9

tor tor 0.1.1

tor tor 0.1.1.22

tor tor 0.1.2.2

tor tor 0.1.1.2 alpha

tor tor 0.1.1.1

tor tor 0.1.0.16

tor tor 0.2.0.20

tor tor 0.1.1.10

tor tor 0.2.0.13

tor tor 0.2.0.1

tor tor 0.1.1.20

tor tor 0.2.0.23

tor tor 0.1.0.17

tor tor 0.1.1.7

tor tor 0.2.0.10

tor tor 0.1.1.25

tor tor 0.1.0.4

tor tor 0.1.1.13

tor tor 0.1.1.8 alpha

tor tor 0.1.1.9 alpha

tor tor 0.1.1.5 alpha

tor tor 0.1.0.11

tor tor 0.1.1.11

tor tor 0.2.0.29

tor tor 0.2.0.6

tor tor 0.2.0.16

tor tor 0.1.1.4

tor tor 0.2.0.5

Vendor Advisories

Debian Bug report logs - #537148 CVE-2009-2425, CVE-2009-2426 Package: tor; Maintainer for tor is Peter Palfrader <weasel@debianorg>; Source for tor is src:tor (PTS, buildd, popcon) Reported by: Giuseppe Iuculano <giuseppe@iuculanoit> Date: Wed, 15 Jul 2009 14:12:02 UTC Severity: important Tags: lenny, security F ...