LWN.net Logo

tor: multiple vulnerabilities

Package(s):tor CVE #(s):CVE-2011-0427
Created:January 17, 2011 Updated:June 9, 2011
Description: From the Debian advisory:

The developers of Tor, an anonymizing overlay network for TCP, found three security issues during a security audit. A heap overflow allowed the execution of arbitrary code (CVE-2011-0427), a denial of service vulnerability was found in the zlib compression handling and some key memory was incorrectly zeroed out before being freed. The latter two issues do not yet have CVE identifiers assigned.

Alerts:
Gentoo 201110-13 2011-10-18
Fedora FEDORA-2011-0650 2011-01-21
Fedora FEDORA-2011-0642 2011-01-21
Debian DSA-2148-1 2011-01-17

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds