6.8

CVE-2011-0427

Heap-based buffer overflow in Tor before 0.2.1.29 and 0.2.2.x before 0.2.2.21-alpha allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
TorTor Version <= 0.2.1.28
TorTor Version0.0.2
TorTor Version0.0.2_pre13
TorTor Version0.0.2_pre14
TorTor Version0.0.2_pre15
TorTor Version0.0.2_pre16
TorTor Version0.0.2_pre17
TorTor Version0.0.2_pre18
TorTor Version0.0.2_pre19
TorTor Version0.0.2_pre20
TorTor Version0.0.2_pre21
TorTor Version0.0.2_pre22
TorTor Version0.0.2_pre23
TorTor Version0.0.2_pre24
TorTor Version0.0.2_pre25
TorTor Version0.0.2_pre26
TorTor Version0.0.2_pre27
TorTor Version0.0.3
TorTor Version0.0.4
TorTor Version0.0.5
TorTor Version0.0.6
TorTor Version0.0.6.1
TorTor Version0.0.6.2
TorTor Version0.0.7
TorTor Version0.0.7.1
TorTor Version0.0.7.2
TorTor Version0.0.7.3
TorTor Version0.0.8
TorTor Version0.0.8.1
TorTor Version0.0.9
TorTor Version0.0.9.1
TorTor Version0.0.9.2
TorTor Version0.0.9.3
TorTor Version0.0.9.4
TorTor Version0.0.9.5
TorTor Version0.0.9.6
TorTor Version0.0.9.7
TorTor Version0.0.9.8
TorTor Version0.0.9.9
TorTor Version0.0.9.10
TorTor Version0.1.0.1
TorTor Version0.1.0.2
TorTor Version0.1.0.3
TorTor Version0.1.0.4
TorTor Version0.1.0.5
TorTor Version0.1.0.6
TorTor Version0.1.0.7
TorTor Version0.1.0.8
TorTor Version0.1.0.9
TorTor Version0.1.0.10
TorTor Version0.1.0.11
TorTor Version0.1.0.12
TorTor Version0.1.0.13
TorTor Version0.1.0.14
TorTor Version0.1.0.15
TorTor Version0.1.0.16
TorTor Version0.1.0.17
TorTor Version0.1.1
TorTor Version0.1.1.1
TorTor Version0.1.1.1 Updatealpha
TorTor Version0.1.1.2
TorTor Version0.1.1.2 Updatealpha
TorTor Version0.1.1.3
TorTor Version0.1.1.3 Updatealpha
TorTor Version0.1.1.4
TorTor Version0.1.1.4 Updatealpha
TorTor Version0.1.1.5
TorTor Version0.1.1.5 Updatealpha
TorTor Version0.1.1.6
TorTor Version0.1.1.6 Updatealpha
TorTor Version0.1.1.7
TorTor Version0.1.1.7 Updatealpha
TorTor Version0.1.1.8
TorTor Version0.1.1.8 Updatealpha
TorTor Version0.1.1.9
TorTor Version0.1.1.9 Updatealpha
TorTor Version0.1.1.10
TorTor Version0.1.1.10 Updatealpha
TorTor Version0.1.1.11
TorTor Version0.1.1.12
TorTor Version0.1.1.13
TorTor Version0.1.1.14
TorTor Version0.1.1.15
TorTor Version0.1.1.16
TorTor Version0.1.1.17
TorTor Version0.1.1.18
TorTor Version0.1.1.19
TorTor Version0.1.1.20
TorTor Version0.1.1.21
TorTor Version0.1.1.22
TorTor Version0.1.1.23
TorTor Version0.1.1.25
TorTor Version0.1.1.26
TorTor Version0.1.2.1 Updatealpha-cvs
TorTor Version0.1.2.2
TorTor Version0.1.2.3 Updatealpha
TorTor Version0.1.2.4
TorTor Version0.1.2.5
TorTor Version0.1.2.5 Updatealpha
TorTor Version0.1.2.6 Updatealpha
TorTor Version0.1.2.7 Updatealpha
TorTor Version0.1.2.8 Updatebeta
TorTor Version0.1.2.9
TorTor Version0.1.2.10
TorTor Version0.1.2.11
TorTor Version0.1.2.12
TorTor Version0.1.2.13
TorTor Version0.1.2.14
TorTor Version0.1.2.15
TorTor Version0.1.2.16
TorTor Version0.1.2.17
TorTor Version0.1.2.18
TorTor Version0.1.2.19
TorTor Version0.1.2.30
TorTor Version0.1.2.31
TorTor Version0.2.0.1 Updatealpha
TorTor Version0.2.0.2 Updatealpha
TorTor Version0.2.0.3 Updatealpha
TorTor Version0.2.0.4 Updatealpha
TorTor Version0.2.0.5 Updatealpha
TorTor Version0.2.0.6 Updatealpha
TorTor Version0.2.0.7 Updatealpha
TorTor Version0.2.0.8 Updatealpha
TorTor Version0.2.0.9 Updatealpha
TorTor Version0.2.0.10 Updatealpha
TorTor Version0.2.0.11 Updatealpha
TorTor Version0.2.0.12 Updatealpha
TorTor Version0.2.0.13 Updatealpha
TorTor Version0.2.0.14 Updatealpha
TorTor Version0.2.0.15 Updatealpha
TorTor Version0.2.0.16 Updatealpha
TorTor Version0.2.0.17 Updatealpha
TorTor Version0.2.0.18 Updatealpha
TorTor Version0.2.0.19 Updatealpha
TorTor Version0.2.0.20 Updatealpha
TorTor Version0.2.0.21 Updatealpha
TorTor Version0.2.0.22 Updatealpha
TorTor Version0.2.0.23 Updatealpha
TorTor Version0.2.0.24 Updatealpha
TorTor Version0.2.0.25 Updatealpha
TorTor Version0.2.0.26 Updatealpha
TorTor Version0.2.0.27 Updatealpha
TorTor Version0.2.0.28 Updatealpha
TorTor Version0.2.0.29
TorTor Version0.2.0.29 Updatealpha
TorTor Version0.2.0.30
TorTor Version0.2.0.30 Updatealpha
TorTor Version0.2.0.31
TorTor Version0.2.0.31 Updatealpha
TorTor Version0.2.0.32 Updatealpha
TorTor Version0.2.0.33
TorTor Version0.2.0.34 Updatealpha
TorTor Version0.2.0.35
TorTor Version0.2.1.1 Updatealpha
TorTor Version0.2.1.2 Updatealpha
TorTor Version0.2.1.3 Updatealpha
TorTor Version0.2.1.4 Updatealpha
TorTor Version0.2.1.5 Updatealpha
TorTor Version0.2.1.6 Updatealpha
TorTor Version0.2.1.7 Updatealpha
TorTor Version0.2.1.8 Updatealpha
TorTor Version0.2.1.9 Updatealpha
TorTor Version0.2.1.10 Updatealpha
TorTor Version0.2.1.11 Updatealpha
TorTor Version0.2.1.12
TorTor Version0.2.1.12 Updatealpha
TorTor Version0.2.1.13
TorTor Version0.2.1.14
TorTor Version0.2.1.15
TorTor Version0.2.1.16
TorTor Version0.2.1.17
TorTor Version0.2.1.18
TorTor Version0.2.1.19
TorTor Version0.2.1.20
TorTor Version0.2.1.21
TorTor Version0.2.1.22
TorTor Version0.2.1.23
TorTor Version0.2.1.24
TorTor Version0.2.1.25
TorTor Version0.2.1.26
TorTor Version0.2.1.27
TorTor Version0.2.2.1
TorTor Version0.2.2.1 Updatealpha
TorTor Version0.2.2.2
TorTor Version0.2.2.2 Updatealpha
TorTor Version0.2.2.3
TorTor Version0.2.2.3 Updatealpha
TorTor Version0.2.2.4
TorTor Version0.2.2.4 Updatealpha
TorTor Version0.2.2.5
TorTor Version0.2.2.5 Updatealpha
TorTor Version0.2.2.6
TorTor Version0.2.2.6 Updatealpha
TorTor Version0.2.2.7 Updatealpha
TorTor Version0.2.2.8 Updatealpha
TorTor Version0.2.2.9 Updatealpha
TorTor Version0.2.2.10 Updatealpha
TorTor Version0.2.2.11 Updatealpha
TorTor Version0.2.2.12 Updatealpha
TorTor Version0.2.2.13 Updatealpha
TorTor Version0.2.2.14 Updatealpha
TorTor Version0.2.2.15 Updatealpha
TorTor Version0.2.2.16 Updatealpha
TorTor Version0.2.2.17 Updatealpha
TorTor Version0.2.2.18 Updatealpha
TorTor Version0.2.2.19 Updatealpha
TorTor Version0.2.2.20 Updatealpha
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 4.44% 0.902
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 6.8 8.6 6.4
AV:N/AC:M/Au:N/C:P/I:P/A:P
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

http://archives.seul.org/or/announce/Jan-2011/msg00000.html
Patch
http://blog.torproject.org/blog/tor-02129-released-security-patches
Patch
Vendor Advisory
http://secunia.com/advisories/42905
Vendor Advisory
http://secunia.com/advisories/42907
Vendor Advisory
http://www.debian.org/security/2011/dsa-2148
http://www.securityfocus.com/bid/45832
http://www.securitytracker.com/id?1024980
http://www.vupen.com/english/advisories/2011/0131
Vendor Advisory
http://www.vupen.com/english/advisories/2011/0132
Vendor Advisory
https://gitweb.torproject.org/tor.git/blob/refs/heads/release-0.2.2:/ChangeLog
Patch
https://exchange.xforce.ibmcloud.com/vulnerabilities/64748