CVE-2011-0491 PUBLISHED CVSS 5 MEDIUM

The tor_realloc function in Tor before 0.2.1.29 and 0.2.2.x before 0.2.2.21-alpha does not validate a certain size value during memory allocation, which might allow remote attackers to cause a denial of service (daemon crash) via unspecified vectors, related to "underflow errors."

EPSS 1.38% · 80.2th percentile

Risk Scores

CVSS v2.0
5
EPSS Score
1.38%
80.2th percentile

Affected Products

VendorProductVersions
tortor0.2.2.20, 0, 0.0.2
n/an/an/a

Timeline

References

Open in Interactive Console →