PT-2009-3525 · Tor · Tor

Lark

·

Published

2009-03-17

·

Updated

2009-04-18

·

CVE-2009-0939

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Tor versions prior to 0.2.0.34
Description The issue concerns the treatment of incomplete IPv4 addresses as valid, which has an unknown impact. It is related to "Spec conformance" and has been demonstrated using the example of 192.168.0.
Recommendations For Tor versions prior to 0.2.0.34, update to version 0.2.0.34 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2009-0939

Affected Products

Tor