REDHAT-BUG-705192: Medium severity tor browser vulnerability
A vulnerability in Tor was reported [1] that could allow a malicious remote attacker to cause a denial of service. This vulnerability is due to a boundary error within the policysummarize() function in src/or/policies.c which can be exploited to crash a Tor directory authority.
Upstream announced the release of 0.2.1.30 [2] that is noted to correct this flaw.
[1] http://secunia.com/advisories/43548/ [2] https://lists.torproject.org/pipermail/tor-announce/2011-February/000000.html
Affected Software
Event History
Frequently Asked Questions
What is the severity of REDHAT-BUG-705192?
The severity of REDHAT-BUG-705192 is significant as it can lead to a denial of service attack against Tor directory authorities.
How do I fix REDHAT-BUG-705192?
To fix REDHAT-BUG-705192, update Tor to a version that is newer than 0.2.1.30, as the vulnerability has been addressed in later releases.
Who is affected by REDHAT-BUG-705192?
REHDAT-BUG-705192 affects users running Tor versions up to 0.2.1.30.
What technical component is vulnerable in REDHAT-BUG-705192?
The vulnerability in REDHAT-BUG-705192 is due to a boundary error within the policy_summarize() function in src/or/policies.c.
Can REDHAT-BUG-705192 be exploited remotely?
Yes, REDHAT-BUG-705192 can be exploited by a malicious remote attacker to crash a Tor directory authority.