|
|
| |
|
| |
tor: multiple vulnerabilities
| Package(s): | tor |
CVE #(s): | CVE-2012-3517
CVE-2012-3518
CVE-2012-3519
|
| Created: | August 30, 2012 |
Updated: | February 4, 2013 |
| Description: |
From the CVE entries:
Use-after-free vulnerability in dns.c in Tor before 0.2.2.38 might allow remote attackers to cause a denial of service (daemon crash) via vectors related to failed DNS requests. (CVE-2012-3517)
The networkstatus_parse_vote_from_string function in routerparse.c in Tor before 0.2.2.38 does not properly handle an invalid flavor name, which allows remote attackers to cause a denial of service (out-of-bounds read and daemon crash) via a crafted (1) vote document or (2) consensus document. (CVE-2012-3518)
routerlist.c in Tor before 0.2.2.38 uses a different amount of time for relay-list iteration depending on which relay is chosen, which might allow remote attackers to obtain sensitive information about relay selection via a timing side-channel attack. (CVE-2012-3519) |
| Alerts: |
|
( Log in to post comments)
|
|
|