An issue exists in Tor prior to 0.2.9.15, 0.3.1.x prior to 0.3.1.10, and 0.3.2.x prior to 0.3.2.10. The directory-authority protocol-list subprotocol implementation allows remote malicious users to cause a denial of service (NULL pointer dereference and directory-authority crash) via a misformatted relay descriptor that is mishandled during voting.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
torproject tor 0.3.1.4 |
||
torproject tor 0.3.1.3 |
||
torproject tor 0.3.1.2 |
||
torproject tor 0.3.1.1 |
||
torproject tor 0.3.2.6 |
||
torproject tor 0.3.2.5 |
||
torproject tor 0.3.2.4 |
||
torproject tor 0.3.2.3 |
||
torproject tor 0.3.2.8 |
||
torproject tor 0.3.2.1 |
||
torproject tor 0.3.1.6 |
||
torproject tor 0.3.1.5 |
||
torproject tor 0.3.2.7 |
||
torproject tor 0.3.2.9 |
||
torproject tor 0.3.2.2 |
||
torproject tor |
||
debian debian linux 9.0 |