5
CVSSv2

CVE-2009-2426

Published: 10/07/2009 Updated: 17/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

The connection_edge_process_relay_cell_not_open function in src/or/relay.c in Tor 0.2.x prior to 0.2.0.35 and 0.1.x prior to 0.1.2.8-beta allows exit relays to have an unspecified impact by causing controllers to accept DNS responses that redirect to an internal IP address via unknown vectors. NOTE: some of these details are obtained from third party information.

Vulnerable Product Search on Vulmon Subscribe to Product

tor tor 0.1.0.15

tor tor 0.1.0.18

tor tor 0.1.0.9

tor tor 0.1.0.2

tor tor 0.1.1.10_alpha

tor tor 0.1.1.11

tor tor 0.1.1.2

tor tor 0.1.1.2_alpha

tor tor 0.1.1.7

tor tor 0.1.1.6_alpha

tor tor 0.1.1.5

tor tor 0.1.1.4_alpha

tor tor 0.1.2.4

tor tor 0.1.2.5

tor tor 0.2.0.15

tor tor 0.2.0.1

tor tor 0.2.0.2

tor tor 0.2.0.21

tor tor 0.2.0.20

tor tor 0.2.0.27

tor tor 0.2.0.4

tor tor 0.2.0.9

tor tor 0.2.0.8

tor tor 0.1.0.1

tor tor 0.1.0.10

tor tor 0.1.0.17

tor tor 0.1.0.6

tor tor 0.1.0.19

tor tor 0.1.0.4

tor tor 0.1.1.12

tor tor 0.1.1.13

tor tor 0.1.1.20

tor tor 0.1.1.21

tor tor 0.1.1.4

tor tor 0.1.1.3_alpha

tor tor 0.1.1.7_alpha

tor tor 0.1.1.8

tor tor 0.1.1.8_alpha

tor tor 0.1.2.6

tor tor 0.2.0.14

tor tor 0.2.0.18

tor tor 0.2.0.19

tor tor 0.2.0.24

tor tor 0.2.0.34

tor tor 0.2.0.33

tor tor 0.2.0.7

tor tor 0.2.0.6

tor tor 0.1.0.13

tor tor 0.1.0.14

tor tor 0.1.0.5

tor tor 0.1.0.8

tor tor 0.1.0.3

tor tor 0.1.1.1

tor tor 0.1.1.14

tor tor 0.1.1.15

tor tor 0.1.1.16

tor tor 0.1.1.22

tor tor 0.1.1.23

tor tor 0.1.1.3

tor tor 0.1.1.26

tor tor 0.1.1.9

tor tor 0.1.1.9_alpha

tor tor 0.1.2.7

tor tor 0.1.2.2

tor tor 0.2.0.13

tor tor 0.2.0.12

tor tor 0.2.0.25

tor tor 0.2.0.22

tor tor 0.2.0.31

tor tor 0.2.0.3

tor tor 0.2.0.5

tor tor 0.1.0.11

tor tor 0.1.0.12

tor tor 0.1.0.16

tor tor 0.1.0.7

tor tor 0.1.1

tor tor 0.1.1.10

tor tor 0.1.1.1_alpha

tor tor 0.1.1.18

tor tor 0.1.1.19

tor tor 0.1.1.25

tor tor 0.1.1.17

tor tor 0.1.1.6

tor tor 0.1.1.5_alpha

tor tor 0.1.2.1_alpha-cvs

tor tor 0.1.2.3

tor tor 0.2.0.17

tor tor 0.2.0.16

tor tor 0.2.0.11

tor tor 0.2.0.10

tor tor 0.2.0.23

tor tor 0.2.0.26

tor tor 0.2.0.29

tor tor 0.2.0.28

Vendor Advisories

Debian Bug report logs - #537148 CVE-2009-2425, CVE-2009-2426 Package: tor; Maintainer for tor is Peter Palfrader <weasel@debianorg>; Source for tor is src:tor (PTS, buildd, popcon) Reported by: Giuseppe Iuculano <giuseppe@iuculanoit> Date: Wed, 15 Jul 2009 14:12:02 UTC Severity: important Tags: lenny, security F ...