Advisories ยป MGASA-2023-0017

Updated tor packages fix security vulnerability

Publication date: 24 Jan 2023
Modification date: 24 Jan 2023
Type: security
Affected Mageia releases : 8
CVE: CVE-2023-23589

Description

SafeSocks option in Tor before 0.4.7.13 has a logic error in which the
unsafe SOCKS4 protocol can be used but not the safe SOCKS4a protocol, aka
TROVE-2022-002. (CVE-2023-23589)
                

References

SRPMS

8/core