Advisories ยป MGASA-2021-0426

Updated tor packages fix security vulnerability

Publication date: 23 Sep 2021
Modification date: 23 Sep 2021
Type: security
Affected Mageia releases : 8
CVE: CVE-2021-38385

Description

Henry de Valence reported a flaw in the signature verification code in Tor,
a connection-based low-latency anonymous communication system. A remote
attacker can take advantage of this flaw to cause an assertion failure,
resulting in denial of service.
                

References

SRPMS

8/core