VDB

CVE-2021-34550

CVE-2021-34550 PUBLISHED

An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-006. The v3 onion service descriptor parsing allows out-of-bounds memory access, and a client crash, via a crafted onion service descriptor

EPSS 0.83% · 74.8th percentile

Risk Scores

EPSS Score
0.83%
74.8th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:20.04:LTStor0, 0.4.1.5-1, 0.4.1.5-1build1
Ubuntu:Pro:18.04:LTStor0.3.0.10-1, 0.3.2.9-1, 0.3.2.10-1

Timeline

  • Jun 25, 2021 CVE Published
  • Jun 30, 2021 EPSS Score
  • Aug 29, 2021 EPSS Score
  • Oct 28, 2021 EPSS Score
  • Jan 6, 2022 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 25, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • Jun 25, 2022 EPSS Score
  • Aug 25, 2022 EPSS Score
  • Oct 25, 2022 EPSS Score
  • Dec 24, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›