CVE-2017-8821
published 2017-12-03CVE-2017-8821: In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9.14, 0.3.0 before 0.3.0.13, and 0.3.1 before 0.3.1.9, an attacker can cause a…
PriorityP337high7.5CVSS 3.0
AVNACLPRNUINSUCNINAH
EPSS
1.96%
78.0th percentile
In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9.14, 0.3.0 before 0.3.0.13, and 0.3.1 before 0.3.1.9, an attacker can cause a denial of service (application hang) via crafted PEM input that signifies a public key requiring a password, which triggers an attempt by the OpenSSL library to ask the user for the password, aka TROVE-2017-011.
Affected
12 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | debian_linux | — | — |
| debian | debian_linux | — | — |
| debian | tor | < tor 0.3.1.9-1 (bookworm) | tor 0.3.1.9-1 (bookworm) |
| tor_project | tor | < 0.2.5.16 | 0.2.5.16 |
| tor_project | tor | >= 0.2.6 < 0.2.8.17 | 0.2.8.17 |
| tor_project | tor | >= 0.2.9 < 0.2.9.14 | 0.2.9.14 |
| tor_project | tor | >= 0.3.0 < 0.3.0.13 | 0.3.0.13 |
| tor_project | tor | >= 0.3.1 < 0.3.1.9 | 0.3.1.9 |
| torproject | tor | >= 0 < 0.3.1.9-1 | 0.3.1.9-1 |
| torproject | tor | >= 0 < 0.3.1.9-1 | 0.3.1.9-1 |
| torproject | tor | >= 0 < 0.3.1.9-1 | 0.3.1.9-1 |
| torproject | tor | >= 0 < 0.3.1.9-1 | 0.3.1.9-1 |
CVSS provenance
nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
osv7.5HIGH
vendor_debian7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-8p62-7f73-7q9x: In Tor before 0
ghsa_unreviewed·2022-05-17
CVE-2017-8821 [HIGH] CWE-119 GHSA-8p62-7f73-7q9x: In Tor before 0
In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9.14, 0.3.0 before 0.3.0.13, and 0.3.1 before 0.3.1.9, an attacker can cause a denial of service (application hang) via crafted PEM input that signifies a public key requiring a password, which triggers an attempt by the OpenSSL library to ask the user for the password, aka TROVE-2017-011.
OSV
CVE-2017-8821: In Tor before 0
osv·2017-12-03·CVSS 7.5
CVE-2017-8821 [HIGH] CVE-2017-8821: In Tor before 0
In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9.14, 0.3.0 before 0.3.0.13, and 0.3.1 before 0.3.1.9, an attacker can cause a denial of service (application hang) via crafted PEM input that signifies a public key requiring a password, which triggers an attempt by the OpenSSL library to ask the user for the password, aka TROVE-2017-011.
Debian
CVE-2017-8821: tor - In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9....
vendor_debian·2017·CVSS 7.5
CVE-2017-8821 [HIGH] CVE-2017-8821: tor - In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9....
In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9.14, 0.3.0 before 0.3.0.13, and 0.3.1 before 0.3.1.9, an attacker can cause a denial of service (application hang) via crafted PEM input that signifies a public key requiring a password, which triggers an attempt by the OpenSSL library to ask the user for the password, aka TROVE-2017-011.
Scope: local
bookworm: resolved (fixed in 0.3.1.9-1)
bullseye: resolved (fixed in 0.3.1.9-1)
forky: resolved (fixed in 0.3.1.9-1)
sid: resolved (fixed in 0.3.1.9-1)
trixie: resolved (fixed in 0.3.1.9-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2017-8819 CVE-2017-8820 CVE-2017-8821 CVE-2017-8822 CVE-2017-8823 tor: Multiple vulnerabilities [epel-6]
bugzilla·2017-12-05·CVSS 7.5
CVE-2017-8819 [HIGH] CVE-2017-8819 CVE-2017-8820 CVE-2017-8821 CVE-2017-8822 CVE-2017-8823 tor: Multiple vulnerabilities [epel-6]
CVE-2017-8819 CVE-2017-8820 CVE-2017-8821 CVE-2017-8822 CVE-2017-8823 tor: Multiple vulnerabilities [epel-6]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of epel-6.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
Discussion:
Use the foll
Bugzilla
CVE-2017-8820 CVE-2017-8821 CVE-2017-8822 CVE-2017-8819 CVE-2017-8823 tor: Multiple vulnerabilities
bugzilla·2017-12-05·CVSS 7.5
CVE-2017-8820 [HIGH] CVE-2017-8820 CVE-2017-8821 CVE-2017-8822 CVE-2017-8819 CVE-2017-8823 tor: Multiple vulnerabilities
CVE-2017-8820 CVE-2017-8821 CVE-2017-8822 CVE-2017-8819 CVE-2017-8823 tor: Multiple vulnerabilities
CVE-2017-8819
In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9.14, 0.3.0 before 0.3.0.13, and 0.3.1 before 0.3.1.9, the replay-cache protection mechanism is ineffective for v2 onion services, aka TROVE-2017-009. An attacker can send many INTRODUCE2 cells to trigger this issue.
CVE-2017-8820
In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before 0.2.8.17, 0.2.9 before 0.2.9.14, 0.3.0 before 0.3.0.13, and 0.3.1 before 0.3.1.9, remote attackers can cause a denial of service (NULL pointer dereference and application crash) against directory authorities via a malformed descriptor, aka TROVE-2017-010.
CVE-2017-8821
In Tor before 0.2.5.16, 0.2.6 through 0.2.8 before
https://blog.torproject.org/new-stable-tor-releases-security-fixes-0319-03013-02914-02817-02516https://bugs.torproject.org/24246https://www.debian.org/security/2017/dsa-4054https://blog.torproject.org/new-stable-tor-releases-security-fixes-0319-03013-02914-02817-02516https://bugs.torproject.org/24246https://www.debian.org/security/2017/dsa-4054
2017-12-03
Published