CVE-2011-2778 Information

Description

Multiple heap-based buffer overflows in Tor before 0.2.2.35 allow remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code by (1) establishing a SOCKS connection to SocksPort or (2) leveraging a SOCKS proxy configuration.

Reference

http://www.debian.org/security/2011/dsa-2363 https://blog.torproject.org/blog/tor-02235-released-security-patches

Share on: