CVE-2012-4419
published 2012-09-14CVE-2012-4419: The compare_tor_addr_to_addr_policy function in or/policies.c in Tor before 0.2.2.39, and 0.2.3.x before 0.2.3.21-rc, allows remote attackers to cause a denial…
PriorityP421medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
2.16%
80.2th percentile
The compare_tor_addr_to_addr_policy function in or/policies.c in Tor before 0.2.2.39, and 0.2.3.x before 0.2.3.21-rc, allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a zero-valued port field that is not properly handled during policy comparison.
Affected
86 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | tor | < tor 0.2.3.22-rc-1 (bookworm) | tor 0.2.3.22-rc-1 (bookworm) |
| torproject | tor | <= 0.2.2.38 | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
| torproject | tor | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv5.0MEDIUM
vendor_debian5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-h4mc-jpwx-rjgp: The tor_timegm function in common/util
ghsa_unreviewed·2022-05-17·CVSS 5.0
CVE-2012-4922 [MEDIUM] CWE-20 GHSA-h4mc-jpwx-rjgp: The tor_timegm function in common/util
The tor_timegm function in common/util.c in Tor before 0.2.2.39, and 0.2.3.x before 0.2.3.22-rc, does not properly validate time values, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a malformed directory object, a different vulnerability than CVE-2012-4419.
GHSA
GHSA-jghf-vwc6-g7gh: The compare_tor_addr_to_addr_policy function in or/policies
ghsa_unreviewed·2022-05-17
CVE-2012-4419 [MEDIUM] GHSA-jghf-vwc6-g7gh: The compare_tor_addr_to_addr_policy function in or/policies
The compare_tor_addr_to_addr_policy function in or/policies.c in Tor before 0.2.2.39, and 0.2.3.x before 0.2.3.21-rc, allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a zero-valued port field that is not properly handled during policy comparison.
OSV
CVE-2012-4419: The compare_tor_addr_to_addr_policy function in or/policies
osv·2012-09-14·CVSS 5.0
CVE-2012-4419 [MEDIUM] CVE-2012-4419: The compare_tor_addr_to_addr_policy function in or/policies
The compare_tor_addr_to_addr_policy function in or/policies.c in Tor before 0.2.2.39, and 0.2.3.x before 0.2.3.21-rc, allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a zero-valued port field that is not properly handled during policy comparison.
OSV
CVE-2012-4922: The tor_timegm function in common/util
osv·2012-09-14·CVSS 5.0
CVE-2012-4922 [MEDIUM] CVE-2012-4922: The tor_timegm function in common/util
The tor_timegm function in common/util.c in Tor before 0.2.2.39, and 0.2.3.x before 0.2.3.22-rc, does not properly validate time values, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a malformed directory object, a different vulnerability than CVE-2012-4419.
Debian
CVE-2012-4922: tor - The tor_timegm function in common/util.c in Tor before 0.2.2.39, and 0.2.3.x bef...
vendor_debian·2012·CVSS 5.0
CVE-2012-4922 [MEDIUM] CVE-2012-4922: tor - The tor_timegm function in common/util.c in Tor before 0.2.2.39, and 0.2.3.x bef...
The tor_timegm function in common/util.c in Tor before 0.2.2.39, and 0.2.3.x before 0.2.3.22-rc, does not properly validate time values, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a malformed directory object, a different vulnerability than CVE-2012-4419.
Scope: local
bookworm: resolved (fixed in 0.2.3.22-rc-1)
bullseye: resolved (fixed in 0.2.3.22-rc-1)
forky: resolved (fixed in 0.2.3.22-rc-1)
sid: resolved (fixed in 0.2.3.22-rc-1)
trixie: resolved (fixed in 0.2.3.22-rc-1)
Debian
CVE-2012-4419: tor - The compare_tor_addr_to_addr_policy function in or/policies.c in Tor before 0.2....
vendor_debian·2012·CVSS 5.0
CVE-2012-4419 [MEDIUM] CVE-2012-4419: tor - The compare_tor_addr_to_addr_policy function in or/policies.c in Tor before 0.2....
The compare_tor_addr_to_addr_policy function in or/policies.c in Tor before 0.2.2.39, and 0.2.3.x before 0.2.3.21-rc, allows remote attackers to cause a denial of service (assertion failure and daemon exit) via a zero-valued port field that is not properly handled during policy comparison.
Scope: local
bookworm: resolved (fixed in 0.2.3.22-rc-1)
bullseye: resolved (fixed in 0.2.3.22-rc-1)
forky: resolved (fixed in 0.2.3.22-rc-1)
sid: resolved (fixed in 0.2.3.22-rc-1)
trixie: resolved (fixed in 0.2.3.22-rc-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-4419 tor: assertion failure in tor_timegm() and assertion failure when comparing an address with port 0 to an address policy [epel-5]
bugzilla·2012-09-13·CVSS 5.0
CVE-2012-4419 [MEDIUM] CVE-2012-4419 tor: assertion failure in tor_timegm() and assertion failure when comparing an address with port 0 to an address policy [epel-5]
CVE-2012-4419 tor: assertion failure in tor_timegm() and assertion failure when comparing an address with port 0 to an address policy [epel-5]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submissio
Bugzilla
CVE-2012-4419 CVE-2012-4922 tor: assertion failures in tor_timegm() and compare_tor_addr_to_addr_policy()
bugzilla·2012-09-13·CVSS 5.0
CVE-2012-4419 [MEDIUM] CVE-2012-4419 CVE-2012-4922 tor: assertion failures in tor_timegm() and compare_tor_addr_to_addr_policy()
CVE-2012-4419 CVE-2012-4922 tor: assertion failures in tor_timegm() and compare_tor_addr_to_addr_policy()
Two instances of remotely triggerable assertion failures have been corrected in upstream Tor 0.2.2.39 version ([1]):
o Security fixes:
- Fix an assertion failure in tor_timegm() that could be triggered
by a badly formatted directory object. Bug found by fuzzing with
Radamsa. Fixes bug 6811; bugfix on 0.2.0.20-rc.
- Do not crash when comparing an address with port value 0 to an
address policy. This bug could have been used to cause a remote
assertion failure by or against directory authorities, or to
allow some applications to crash clients. Fixes bug 6690; bugfix
on 0.2.1.10-alpha.
References:
[1] https://gitweb.torproject.org/tor.git/blob/release-0.2.2:/ReleaseNotes
[2] http://www.o
Bugzilla
CVE-2012-4419 tor: assertion failure in tor_timegm() and assertion failure when comparing an address with port 0 to an address policy [fedora-all]
bugzilla·2012-09-13·CVSS 5.0
CVE-2012-4419 [MEDIUM] CVE-2012-4419 tor: assertion failure in tor_timegm() and assertion failure when comparing an address with port 0 to an address policy [fedora-all]
CVE-2012-4419 tor: assertion failure in tor_timegm() and assertion failure when comparing an address with port 0 to an address policy [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submi
http://lists.fedoraproject.org/pipermail/package-announce/2012-September/088006.htmlhttp://lists.opensuse.org/opensuse-updates/2012-10/msg00005.htmlhttp://openwall.com/lists/oss-security/2012/09/13/2http://secunia.com/advisories/50583http://security.gentoo.org/glsa/glsa-201301-03.xmlhttps://gitweb.torproject.org/tor.git/blob/release-0.2.2:/ReleaseNoteshttps://gitweb.torproject.org/tor.git/commit/62d96284f7e0f81c40d5df7e53dd7b4dfe7e56a5https://lists.torproject.org/pipermail/tor-talk/2012-September/025434.htmlhttps://trac.torproject.org/projects/tor/ticket/6690http://lists.fedoraproject.org/pipermail/package-announce/2012-September/088006.htmlhttp://lists.opensuse.org/opensuse-updates/2012-10/msg00005.htmlhttp://openwall.com/lists/oss-security/2012/09/13/2http://secunia.com/advisories/50583http://security.gentoo.org/glsa/glsa-201301-03.xmlhttps://gitweb.torproject.org/tor.git/blob/release-0.2.2:/ReleaseNoteshttps://gitweb.torproject.org/tor.git/commit/62d96284f7e0f81c40d5df7e53dd7b4dfe7e56a5https://lists.torproject.org/pipermail/tor-talk/2012-September/025434.htmlhttps://trac.torproject.org/projects/tor/ticket/6690
2012-09-14
Published