Tor Remote Denial of Service Vulnerability
BID:56675
Info
Tor Remote Denial of Service Vulnerability
| Bugtraq ID: | 56675 |
| Class: | Unknown |
| CVE: |
CVE-2012-5573 |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 19 2012 12:00AM |
| Updated: | Apr 13 2015 09:40PM |
| Credit: | arma |
| Vulnerable: |
Tor Tor 0.2.2.39 Tor Tor 0.2.2.38 Tor Tor 0.2.2.37 Tor Tor 0.2.2.34 Mandriva Business Server 1 X86 64 Mandriva Business Server 1 |
| Not Vulnerable: |
Tor Tor 0.2.3 25 |
Discussion
Tor Remote Denial of Service Vulnerability
Tor is prone to a remote denial-of-service vulnerability.
Exploiting this issue can allow attackers to consume excessive memory resources. This results in the denial of further service for legitimate users.
Versions prior to Tor 0.2.3.25 are vulnerable.
Tor is prone to a remote denial-of-service vulnerability.
Exploiting this issue can allow attackers to consume excessive memory resources. This results in the denial of further service for legitimate users.
Versions prior to Tor 0.2.3.25 are vulnerable.
Exploit / POC
Tor Remote Denial of Service Vulnerability
Attackers can use readily available tools to exploit this issue.
Attackers can use readily available tools to exploit this issue.
Solution / Fix
Tor Remote Denial of Service Vulnerability
Solution:
Updates are available. Please see the references for more information.
Mandriva Business Server 1 X86 64
Solution:
Updates are available. Please see the references for more information.
Mandriva Business Server 1 X86 64
-
Mandriva tor-0.2.2.39-1.mbs1.x86_64.rpm
http://www.mandriva.com/en/downloads/
References
Tor Remote Denial of Service Vulnerability
References:
References:
- Ticket #6252 (closed defect: fixed) (Tor)
- Tor Homepage (Tor)
- ReleaseNotes 0.2.3.25 (Tor)