Your submission was sent successfully! Close

CVE-2015-2929

Published: 24 January 2020

The Hidden Service (HS) client implementation in Tor before 0.2.4.27, 0.2.5.x before 0.2.5.12, and 0.2.6.x before 0.2.6.7 allows remote servers to cause a denial of service (assertion failure and application exit) via a malformed HS descriptor.

Priority

Medium

CVSS 3 base score: 7.5

Status

Package Release Status
tor
Launchpad, Ubuntu, Debian
Upstream
Released (0.2.5.12-1)
Ubuntu 16.04 ESM (Xenial Xerus) Not vulnerable
(0.2.6.10-1)
Ubuntu 14.04 ESM (Trusty Tahr)
Released (0.2.4.27-1build0.14.04.1)