MEDIUM
tor: multiple security fixes in 0.2.0.34 (CVE-2009-0936, CVE-2009-0937, CVE-2009-0938, CVE-2009-0939)
Published Mar 18, 2009
5.0
MEDIUMCVSS 2.0
EPSS 1.71%
Description
Unspecified vulnerability in Tor before 0.2.0.34 allows attackers to cause a denial of service (infinite loop) via "corrupt votes."
Affected products
No data.
OR
- ≤ 0.2.0.33
- 0.2.0.1
- 0.2.0.2
- 0.2.0.3
- 0.2.0.4
- 0.2.0.5
- 0.2.0.6
- 0.2.0.10
- 0.2.0.11
- 0.2.0.12
- 0.2.0.13
- 0.2.0.14
- 0.2.0.15
- 0.2.0.16
- 0.2.0.17
- 0.2.0.18
- 0.2.0.19
- 0.2.0.20
- 0.2.0.21
- 0.2.0.22
- 0.2.0.23
- 0.2.0.24
- 0.2.0.25
- 0.2.0.26
- 0.2.0.27
- 0.2.0.28
- 0.2.0.29
- 0.2.0.30
- 0.2.0.31
- 0.2.0.32
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (10)
- http://archives.seul.org/or/announce/Feb-2009/msg00000.html mailing-listx_refsource_MLISTPatch
- http://secunia.com/advisories/33880 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://secunia.com/advisories/34583 third-party-advisoryx_refsource_SECUNIA
- http://security.gentoo.org/glsa/glsa-200904-11.xml vendor-advisoryx_refsource_GENTOO
- http://www.securityfocus.com/bid/33713 vdb-entryx_refsource_BID
- https://access.redhat.com/security/cve/CVE-2009-0936 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=485021 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2009-0933 Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2009-0936
- https://www.cve.org/CVERecord?id=CVE-2009-0936
| Link | Providers | Tags |
|---|---|---|
| http://archives.seul.org/or/announce/Feb-2009/msg00000.html | mailing-listx_refsource_MLISTPatch | |
| http://secunia.com/advisories/33880 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://secunia.com/advisories/34583 | third-party-advisoryx_refsource_SECUNIA | |
| http://security.gentoo.org/glsa/glsa-200904-11.xml | vendor-advisoryx_refsource_GENTOO | |
| http://www.securityfocus.com/bid/33713 | vdb-entryx_refsource_BID | |
| https://access.redhat.com/security/cve/CVE-2009-0936 | Vendor Advisory | |
| https://bugzilla.redhat.com/show_bug.cgi?id=485021 | Issue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2009-0933 | Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2009-0936 | ||
| https://www.cve.org/CVERecord?id=CVE-2009-0936 |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Mar 18, 2009
Updated Aug 7, 2024
Reserved Mar 17, 2009
Link CVE-2009-0936
CISA Vulnrichment
Updated n/a
ENISA EUVD
EUVD-2009-0933 Assigner mitre
Published Mar 18, 2009
Updated Aug 7, 2024
Exploited since n/a
Link EUVD-2009-0933