Tor before 0.3.5.16, 0.4.5.10, and 0.4.6.7 mishandles the relationship between batch-signature verification and single-signature verification, leading to a remote assertion failure, aka TROVE-2021-007.
The product contains an assert() or similar statement that can be triggered by an attacker, which leads to an application exit or other behavior that is more severe than necessary.
Link | Tags |
---|---|
https://blog.torproject.org | release notes vendor advisory |
https://blog.torproject.org/node/2062 | release notes vendor advisory |
https://bugs.torproject.org/tpo/core/tor/40078 | issue tracking exploit vendor advisory |
https://security.gentoo.org/glsa/202305-11 | vendor advisory |