Release date:
Updated on:
Affected Systems:
Tor 0.2.4.11-alpha
Description:
--------------------------------------------------------------------------------
Bugtraq id: 64649
Tor is an implementation of the second generation of onion routing. Users can communicate anonymously over the Internet through Tor.
Tor 0.2.4.11-alpha and other versions have the Security Restriction Bypass Vulnerability in the implementation of the 'Connection _ ap_process_not_open () 'function. Attackers can exploit this vulnerability to bypass certain security restrictions and perform unauthorized operations.
<* Source: nickm
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Tor
---
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://tor.eff.org/