CVE-2020-15572
15.07.2020, 17:15
Tor before 0.4.3.6 has an out-of-bounds memory access that allows a remote denial-of-service (crash) attack against Tor instances built to use Mozilla Network Security Services (NSS), aka TROVE-2020-001.Enginsight
Vendor | Product | Version |
---|---|---|
torproject | tor | 𝑥 < 0.3.5.11 |
torproject | tor | 0.4.2.0 < 𝑥 < 0.4.2.8 |
torproject | tor | 0.4.3.0 < 𝑥 < 0.4.3.6 |
torproject | tor | 0.4.4.0:alpha |
torproject | tor | 0.4.4.1:alpha |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References