Back to search
CVE-2011-0015
Published: Jan 19, 2011
Modified: Aug 6, 2024
PUBLISHED
Description
Tor before 0.2.1.29 and 0.2.2.x before 0.2.2.21-alpha does not properly check the amount of compression in zlib-compressed data, which allows remote attackers to cause a denial of service via a large compression factor.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[or-announce] 20110117 Tor 0.2.1.29 is released (security patches)
mailing-list
x_refsource_MLIST
ADV-2011-0131
vdb-entry
x_refsource_VUPEN
https://trac.torproject.org/projects/tor/ticket/2324
x_refsource_CONFIRM
42907
third-party-advisory
x_refsource_SECUNIA
http://blog.torproject.org/blog/tor-02129-released-security-patches
x_refsource_CONFIRM
1024980
vdb-entry
x_refsource_SECTRACK
ADV-2011-0132
vdb-entry
x_refsource_VUPEN
DSA-2148
vendor-advisory
x_refsource_DEBIAN
42905
third-party-advisory
x_refsource_SECUNIA
[oss-security] 20110118 Re: CVE request: tor
mailing-list
x_refsource_MLIST
45832
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now