MEDIUM
The connection_edge_process_relay_cell_not_open function in src/or/relay.c in Tor 0.2.x before 0.2.0.35 and 0.1.x before 0.1.2.8-beta allows exit relays to have an unspecified impact by causing controllers to accept DNS responses that redirect to an internal IP address via unknown vectors
Published Jul 10, 2009
5.0
MEDIUMCVSS 2.0
EPSS 1.92%
Description
The connection_edge_process_relay_cell_not_open function in src/or/relay.c in Tor 0.2.x before 0.2.0.35 and 0.1.x before 0.1.2.8-beta allows exit relays to have an unspecified impact by causing controllers to accept DNS responses that redirect to an internal IP address via unknown vectors. NOTE: some of these details are obtained from third party information.
Affected products
No data.
OR
- 0.1.0.1
- 0.1.0.2
- 0.1.0.3
- 0.1.0.4
- 0.1.0.5
- 0.1.0.6
- 0.1.0.7
- 0.1.0.8
- 0.1.0.9
- 0.1.0.10
- 0.1.0.11
- 0.1.0.12
- 0.1.0.13
- 0.1.0.14
- 0.1.0.15
- 0.1.0.16
- 0.1.0.17
- 0.1.0.18
- 0.1.0.19
- 0.1.1
- 0.1.1.1
- 0.1.1.1_alpha
- 0.1.1.2
- 0.1.1.2_alpha
- 0.1.1.3
- 0.1.1.3_alpha
- 0.1.1.4
- 0.1.1.4_alpha
- 0.1.1.5
- 0.1.1.5_alpha
- 0.1.1.6
- 0.1.1.6_alpha
- 0.1.1.7
- 0.1.1.7_alpha
- 0.1.1.8
- 0.1.1.8_alpha
- 0.1.1.9
- 0.1.1.9_alpha
- 0.1.1.10
- 0.1.1.10_alpha
- 0.1.1.11
- 0.1.1.12
- 0.1.1.13
- 0.1.1.14
- 0.1.1.15
- 0.1.1.16
- 0.1.1.17
- 0.1.1.18
- 0.1.1.19
- 0.1.1.20
- 0.1.1.21
- 0.1.1.22
- 0.1.1.23
- 0.1.1.25
- 0.1.1.26
- 0.1.2.1_alpha-cvs
- 0.1.2.2
- 0.1.2.3
- 0.1.2.4
- 0.1.2.5
- 0.1.2.5
- 0.1.2.6
- 0.1.2.7
- 0.2.0.1
- 0.2.0.2
- 0.2.0.3
- 0.2.0.4
- 0.2.0.5
- 0.2.0.6
- 0.2.0.7
- 0.2.0.8
- 0.2.0.9
- 0.2.0.10
- 0.2.0.11
- 0.2.0.12
- 0.2.0.13
- 0.2.0.14
- 0.2.0.15
- 0.2.0.16
- 0.2.0.17
- 0.2.0.18
- 0.2.0.19
- 0.2.0.20
- 0.2.0.21
- 0.2.0.22
- 0.2.0.23
- 0.2.0.24
- 0.2.0.25
- 0.2.0.26
- 0.2.0.27
- 0.2.0.28
- 0.2.0.29
- 0.2.0.31
- 0.2.0.33
- 0.2.0.34
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (0)
No CWE recorded.
References (6)
- http://archives.seul.org/or/announce/Jun-2009/msg00000.html mailing-listx_refsource_MLISTPatch
- http://secunia.com/advisories/35546 third-party-advisoryx_refsource_SECUNIAVendor Advisory
- http://www.osvdb.org/55341 vdb-entryx_refsource_OSVDBPatch
- http://www.securityfocus.com/bid/35505 vdb-entryx_refsource_BIDPatch
- http://www.vupen.com/english/advisories/2009/1716 vdb-entryx_refsource_VUPENPatchVendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/51377 vdb-entryx_refsource_XF
| Link | Providers | Tags |
|---|---|---|
| http://archives.seul.org/or/announce/Jun-2009/msg00000.html | mailing-listx_refsource_MLISTPatch | |
| http://secunia.com/advisories/35546 | third-party-advisoryx_refsource_SECUNIAVendor Advisory | |
| http://www.osvdb.org/55341 | vdb-entryx_refsource_OSVDBPatch | |
| http://www.securityfocus.com/bid/35505 | vdb-entryx_refsource_BIDPatch | |
| http://www.vupen.com/english/advisories/2009/1716 | vdb-entryx_refsource_VUPENPatchVendor Advisory | |
| https://exchange.xforce.ibmcloud.com/vulnerabilities/51377 | vdb-entryx_refsource_XF |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jul 10, 2009
Updated Aug 7, 2024
Reserved Jul 10, 2009
Link CVE-2009-2426
CISA Vulnrichment
Updated n/a