[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

244411

 
 

909

 
 

193363

 
 

277

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-3741-1 tor -- tor

ID: oval:org.secpod.oval:def:602707Date: (C)2016-12-21   (M)2023-11-13
Class: PATCHFamily: unix




It was discovered that Tor, a connection-based low-latency anonymous communication system, may read one byte past a buffer when parsing hidden service descriptors. This issue may enable a hostile hidden service to crash Tor clients depending on hardening options and malloc implementation.

Platform:
Debian 8.x
Product:
tor
Reference:
DSA-3741-1
CVE-2016-1254
CVE    1
CVE-2016-1254
CPE    2
cpe:/a:tor:tor
cpe:/o:debian:debian_linux:8.x

© SecPod Technologies