Updated tor packages fix security vulnerability
Publication date: 24 Jan 2023Modification date: 24 Jan 2023
Type: security
Affected Mageia releases : 8
CVE: CVE-2023-23589
Description
SafeSocks option in Tor before 0.4.7.13 has a logic error in which the unsafe SOCKS4 protocol can be used but not the safe SOCKS4a protocol, aka TROVE-2022-002. (CVE-2023-23589)
References
SRPMS
8/core
- tor-0.4.5.16-1.mga8