CVE Published: 24/01/2020 |
CVE Updated: 06/08/2024 |
CVE Year: 2015 Source: debian |
Vendor: The Tor Project |
Product: Tor Status : PUBLISHED
CVE-2015-2688 Description
buf_pullup in Tor before 0.2.4.26 and 0.2.5.x before 0.2.5.11 does not properly handle unexpected arrival times of buffers with invalid layouts, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via crafted packets.