CVE Vulnerabilities

CVE-2018-0490

NULL Pointer Dereference

Published: Mar 05, 2018 | Modified: Apr 30, 2019
CVSS 3.x
7.5
HIGH
Source:
NVD
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

An issue was discovered in Tor before 0.2.9.15, 0.3.1.x before 0.3.1.10, and 0.3.2.x before 0.3.2.10. The directory-authority protocol-list subprotocol implementation allows remote attackers to cause a denial of service (NULL pointer dereference and directory-authority crash) via a misformatted relay descriptor that is mishandled during voting.

Weakness

A NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.

Affected Software

Name Vendor Start Version End Version
Tor Torproject 0.3.1.1 0.3.1.1
Tor Torproject 0.3.1.2 0.3.1.2
Tor Torproject 0.3.1.3 0.3.1.3
Tor Torproject 0.3.1.4 0.3.1.4
Tor Torproject 0.3.1.5 0.3.1.5
Tor Torproject 0.3.2.7 0.3.2.7
Tor Torproject 0.3.2.8 0.3.2.8
Tor Torproject 0.3.2.9 0.3.2.9
Tor Torproject 0.3.2.6 0.3.2.6
Tor Torproject 0.3.2.5 0.3.2.5
Tor Torproject 0.3.2.4 0.3.2.4
Tor Torproject 0.3.2.3 0.3.2.3
Tor Torproject 0.3.2.2 0.3.2.2
Tor Torproject 0.3.2.1 0.3.2.1
Tor Torproject 0.3.1.7 0.3.1.9
Tor Torproject 0.3.1.6 0.3.1.6
Tor Torproject * 0.2.9.14

Potential Mitigations

References