Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2012-3518

The networkstatus_parse_vote_from_string function in routerparse.c in Tor before 0.2.2.38 does not properly handle an invalid flavor name, which allows remote attackers to cause a denial of service (out-of-bounds read and daemon crash) via a crafted (1) vote document or (2) consensus document.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.015
EPSS Ranking 80.0%
CVSS Severity
CVSS v2 Score 5.0
References
Products affected by CVE-2012-3518
  • Tor » Tor » Version: Any
    cpe:2.3:a:tor:tor:*


Contact Us

Shodan ® - All rights reserved