CVE-2012-5573
Published Jan 1, 2013
Last updated 7 years ago
Overview
- Description
- The connection_edge_process_relay_cell function in or/relay.c in Tor before 0.2.3.25 maintains circuits even if an unexpected SENDME cell arrives, which might allow remote attackers to cause a denial of service (memory consumption or excessive cell reception rate) or bypass intended flow-control restrictions via a RELAY_COMMAND_SENDME command.
- Source
- secalert@redhat.com
- NVD status
- Modified
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:P
Weaknesses
- nvd@nist.gov
- CWE-399
Social media
- Hype score
- Not currently trending
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:torproject:tor:*:rc:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ACD84AC0-8E46-423B-A126-44C0035F478B", "versionEndIncluding": "0.2.3.24" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "42286A56-BB47-4A3E-B092-1057311D4960" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre13:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "47511223-D650-4207-9856-DE025823231A" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre14:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0AD6C8F2-3050-453B-8942-A1916E3FC12B" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre15:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B34E2465-7E2D-40FA-B8F7-33B057C459CB" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre16:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CB68EBE3-3517-4D04-8F40-7DE3A21BE9D8" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre17:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A4C33393-220A-46D7-8C9F-67E5623A5F12" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre18:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5519509B-B07D-4514-A404-D812DBF3239D" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre19:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D65FBECD-2EA2-4779-9198-B3CA4B67A49B" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre20:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CF20BBD0-CA62-4FB2-B46D-F9BBFEF452F6" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre21:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F2317720-AC9D-4BA5-A334-34FA389AA097" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre22:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "136DB452-2322-4FC5-A195-04E561D1D49F" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre23:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3D483797-8490-4625-8AF0-E6FF3C02CD72" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre24:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2341BDA5-859F-4BF4-A009-2DEB7902108B" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre25:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "61C72051-52C5-43EC-88BD-C9E112C08827" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre26:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8699607B-7F86-4167-8CE8-699FE8F43D21" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.2:pre27:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "68ADC617-824D-4D1C-BDF8-4EB19D5656B9" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D04E67E7-93DD-4E8F-B88C-9C8C0721CDAD" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6D858688-5063-4D39-BF58-189333D71785" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6978370D-97D0-4C26-B050-8B2045404D03" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0A1F71E8-D642-4F22-B377-34F011BF9160" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.6.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EA9ACB8B-8185-4581-ABE4-0D8CE3A28BE0" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.6.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B37E9B4D-E5C4-44AB-834D-8B37F3029001" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CB3E5A9D-4CA3-43D5-AF13-375B23891B51" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.7.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B5561A8E-CF13-4243-975F-3E754494C4A9" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.7.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1F6AD9BE-352A-4ED2-97DA-4D4948F87B27" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.7.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3234D4EE-1B3F-4835-A387-F41D76178254" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.8.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "56068ADD-8079-497B-B031-1094F1DC15B1" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.9.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "206353C7-8644-4F44-96CD-1FBEB39F2771" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.9.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F1C578AB-95AD-4160-9319-16A1497D528C" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.9.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "80CD91D9-CC8B-44AE-8FF9-056733B36E11" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.9.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0CD8CC62-0C9F-47C8-B686-B376F2261ECF" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.9.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F74DBE38-B5F0-4FFC-9F98-7A55326A23EF" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.9.6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "439B85D4-9DC8-447D-ACC8-EB12C43B4F3C" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.9.7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "85A83136-AF8F-46FE-848C-37B26EDBD1ED" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.9.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7BDE9034-B5AF-403A-8220-715347F44519" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.9.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "379069A5-CEAC-42E0-B905-39F0AF29C954" }, { "criteria": "cpe:2.3:a:torproject:tor:0.0.9.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "13A4435E-23A6-45F3-94B1-75219555DEDB" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.0.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CF0E2924-3559-419C-A033-391549D5E7E7" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.0.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "53E280D9-3371-4106-A0AA-ECE3AD2753F9" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.0.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9B608EB4-FC95-48CC-A90C-D079B2446F6B" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.0.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E04B4802-C2FC-45FF-9C27-0B8E6DF8F1C0" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.0.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DC41D6A9-B645-427F-B141-9A3ACC755FE6" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.0.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7A28BAE2-8F08-4002-A700-AAC581CED48B" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.0.16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7BD06667-698A-4F64-9431-727FC905C6C6" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.0.17:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6BB82CEC-AAE1-4393-B307-860AFB65C277" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.1.20:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0BDFC6E1-F7EB-4033-BB4B-58A9182694B5" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.1.21:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "45284729-472F-48FD-AC9F-707A3174ADD2" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.1.22:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5B266267-98D0-4245-B455-08B2B9B69DA1" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.1.23:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CB3CD2DF-9659-4C0A-A046-9AC6E566A558" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.1.24:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "38A24E38-F136-41EA-A8EB-CD279EC9DE54" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.1.25:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FDF29849-516A-4731-B6ED-767B09024232" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.1.26:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AA26D387-0326-4CD5-98B0-F67D5621D2A3" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.2.13:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F05957B6-A8DF-4A04-8553-232101DEC9FC" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.2.14:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DC17296B-23A2-427B-8D41-4BED6E22DA60" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.2.15:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "79B573F9-9966-4D61-802A-BBE3778FD3C3" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.2.16:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F5D625E1-0DA6-483E-A251-E161E6108225" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.2.17:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6D07F398-828C-4008-BC3E-3E511339B437" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.2.18:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6FB18F2C-1E37-48FA-9DAE-C20B9B7B80E7" }, { "criteria": "cpe:2.3:a:torproject:tor:0.1.2.19:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "39D81D6F-372A-41AE-B42D-2BB1C4D4AB4F" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.0.30:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "52D2C091-8D45-4AC7-93FD-BAD81F2D6D63" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.0.31:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "3283E8DB-8238-4796-9CEB-207C6BF1E797" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.0.32:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9737DA01-3E58-4229-AB03-16646F703F83" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.0.33:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D6B2D6EF-7451-4A78-87D0-9339F3E2AB2D" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.0.34:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D7ECB794-8331-48E7-BCD2-B9822F9C114A" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.0.35:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1F293F19-E2AA-4133-B4D0-C5E1B2AF9CD6" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.18:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "10344C2C-3137-4D2F-99A7-7802B80DE126" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.19:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C0182C38-23CC-4E54-8C3F-6AA4A3B863DF" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.20:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7B75EC06-BF76-4CA0-B604-6324AC6FC240" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.21:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "16C53110-3FDC-4F28-9C4D-D08E14C6DB8C" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.22:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "729E4E08-2556-4A29-829D-318719EE734B" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.23:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8B138D53-A28F-43CC-91F1-6B073A2F10F3" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.24:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "7B20CCDC-94FF-4BDA-9111-E47AA8D475BA" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.25:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BB96E018-34C5-4462-B89C-55C42C8384D5" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.26:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BE594F43-0630-4937-A7AB-F8F9590A4167" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.27:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "66A60CAC-A278-4AA2-A89A-E00E3D3B4127" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.28:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "787E7A32-2CC4-43C1-8324-66772736F4D5" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.29:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "36A36AAD-FB31-4793-A64B-1FAD90654687" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.30:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B5D9043C-E793-4505-9499-03B36D1F1545" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.31:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C0964E57-978F-445F-BBB1-817DBA1E8517" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.32:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "933AC26E-E1CD-4B5B-B15A-31796B4B843F" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.33:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "930D1039-AE12-41DE-BF9E-5BCB3FF396E7" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.34:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5ABBC508-673E-405E-8760-EA156C3A1B84" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.35:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "93DBADBE-A941-4253-A509-9484BAF0FB7B" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.36:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "60D4C951-CA2B-44F5-97C7-C1BE4B27B0C2" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.37:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "146CEE2D-5FD6-4F2F-95E2-AB9D982C1D34" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.2.38:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "70EB1D7F-0E37-43B4-86CB-3E3D91056974" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A308F86E-B64B-40CA-A880-827F5FDCFCC3" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.3.13:alpha:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "888C8557-D3B3-43C9-9602-AA707EA20D53" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.3.14:alpha:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1A50B658-1049-4467-B95E-2F697F2DD8B7" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.3.15:alpha:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D60AE56E-EE6D-4992-BD5B-5E32F5DDB385" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.3.16:alpha:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "695A8085-2198-4DB7-BA5B-734063FB74D9" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.3.17:beta:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "35936C42-AAA8-40FC-803D-2F56D8B881BA" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.3.18:rc:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EB448439-B7C3-441F-8923-AC125324A517" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.3.19:rc:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9F471155-F0ED-4F73-A04C-EF39DFC9F666" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.3.20:rc:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D93C514A-0BCB-4BDD-84C2-6C78D346FC13" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.3.21:rc:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5F4A9816-F5D0-42DA-9ADB-F0D2B4A08A74" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.3.22:rc:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6B44CB99-1F06-4042-A8AA-AB520DE38511" }, { "criteria": "cpe:2.3:a:torproject:tor:0.2.3.23:rc:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DBEFA4D9-67B6-474C-B92D-0BB970FE78C2" } ], "operator": "OR" } ] } ]