CVE-2012-3518: Buffer Overflow
The networkstatusparsevotefromstring function in routerparse.c in Tor before 0.2.2.38 does not properly handle an invalid flavor name, which allows remote attackers to cause a denial of service (out-of-bounds read and daemon crash) via a crafted (1) vote document or (2) consensus document.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-3518?
CVE-2012-3518 has a severity rating that indicates it can lead to denial of service through a crash of the Tor daemon.
How do I fix CVE-2012-3518?
To fix CVE-2012-3518, upgrade to Tor version 0.2.2.38 or later.
What vulnerability does CVE-2012-3518 expose in Tor?
CVE-2012-3518 exposes a vulnerability that allows attackers to exploit invalid flavor names, causing out-of-bounds reads.
Who can be affected by CVE-2012-3518?
Users running versions of Tor prior to 0.2.2.38 may be affected by CVE-2012-3518.
What type of attack is associated with CVE-2012-3518?
CVE-2012-3518 is associated with remote denial of service attacks via crafted vote or consensus documents.