Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-34549

Опубликовано: 29 июн. 2021
Источник: debian
EPSS Низкий

Описание

An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-005. Hashing is mishandled for certain retrieval of circuit data. Consequently. an attacker can trigger the use of an attacker-chosen circuit ID to cause algorithm inefficiency.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
torfixed0.4.5.9-1package
torend-of-lifestretchpackage

Примечания

  • https://blog.torproject.org/node/2041

EPSS

Процентиль: 70%
0.00645
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 4 лет назад

An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-005. Hashing is mishandled for certain retrieval of circuit data. Consequently. an attacker can trigger the use of an attacker-chosen circuit ID to cause algorithm inefficiency.

CVSS3: 7.5
nvd
больше 4 лет назад

An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-005. Hashing is mishandled for certain retrieval of circuit data. Consequently. an attacker can trigger the use of an attacker-chosen circuit ID to cause algorithm inefficiency.

CVSS3: 7.5
github
больше 3 лет назад

An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-005. Hashing is mishandled for certain retrieval of circuit data. Consequently. an attacker can trigger the use of an attacker-chosen circuit ID to cause algorithm inefficiency.

CVSS3: 7.5
fstec
больше 4 лет назад

Уязвимость функцией SSL-Proxy анонимного веб-браузера Tor, позволяющая нарушителю вызвать отказ в обслуживании

suse-cvrf
больше 4 лет назад

Security update for tor

EPSS

Процентиль: 70%
0.00645
Низкий