FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

tor -- information disclosure

Affected packages
tor < 0.1.0.10

Details

VuXML ID 691ed622-e499-11d9-a8bd-000cf18bbe54
Discovery 2005-06-16
Entry 2005-06-24

Roger Dingledine reports:

The Tor 0.1.0.10 release from a few days ago includes a fix for a bug that might allow an attacker to read arbitrary memory (maybe even keys) from an exit server's process space. We haven't heard any reports of exploits yet, but hey.

References

Message http://archives.seul.org/or/announce/Jun-2005/msg00001.html