PT-2023-35516 · Tor+1 · Tor+1
Publicado
2023-11-10
·
Atualizado
2023-11-10
Nenhuma
Não há classificações de severidade ou métricas disponíveis. Quando houver, atualizaremos as informações correspondentes na página.
Name of the Vulnerable Software and Affected Versions
tor versions 0.4.7.14 through 0.4.8.7
tor version 0.4.8.8
Description
The issue is related to several bugs and reliability problems in the Tor software, including a crash during handshake with a remote relay when compiled with OpenSSL, expiration of introduction points for onion services, and issues with conflux traffic splitting. The problems can cause connectivity issues for clients and potentially lead to denial-of-service attacks.
Recommendations
For tor versions 0.4.7.14 through 0.4.8.7, update to version 0.4.8.8 to mitigate the issues.
For tor version 0.4.8.8, no additional actions are required as this version already includes the necessary fixes.
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Openssl
Tor