PT-2011-2389 · Libevent+1 · Libevent+1
Debuger
·
Publicado
2011-01-19
·
Atualizado
2017-08-17
·
CVE-2011-0490
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Tor versions prior to 0.2.1.29
Tor versions 0.2.2.x prior to 0.2.2.21-alpha
Description
The issue allows remote attackers to cause a denial of service, potentially leading to a daemon crash, by triggering certain log messages. This is due to calls made to Libevent within Libevent log handlers.
Recommendations
For Tor versions prior to 0.2.1.29, update to version 0.2.1.29 or later.
For Tor versions 0.2.2.x prior to 0.2.2.21-alpha, update to version 0.2.2.21-alpha or later.
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Libevent
Tor