CVE-2021-38385
30.08.2021, 05:15
Tor before 0.3.5.16, 0.4.5.10, and 0.4.6.7 mishandles the relationship between batch-signature verification and single-signature verification, leading to a remote assertion failure, aka TROVE-2021-007.Enginsight
| Vendor | Product | Version |
|---|---|---|
| torproject | tor | 𝑥 < 0.3.5.16 |
| torproject | tor | 0.4.0.0 ≤ 𝑥 < 0.4.5.10 |
| torproject | tor | 0.4.6.0 ≤ 𝑥 < 0.4.6.7 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References