Vulnerability Bulletins

DSA-3877 tor - security update

   
Affected software Debian
 
It has been discovered that Tor, a connection-based low-latencyanonymous communication system, contain a flaw in the hidden servicecode when receiving a BEGIN_DIR cell on a hidden service rendezvouscircuit. A remote attacker can take advantage of this flaw to cause ahidden service to crash with an assertion failure (TROVE-2017-005).

More info:

https://www.debian.org/security/2017/dsa-3877