Denial of Service Vulnerability in Tor Network Software
CVE-2018-0490
7.5HIGH
What is CVE-2018-0490?
An issue in earlier versions of Tor software allows remote attackers to exploit a flaw in the directory-authority protocol-list subprotocol. This vulnerability can lead to a denial of service due to a NULL pointer dereference, causing instability in the directory-authority and potentially crashing it when mishandling a formatted relay descriptor during voting. Proper attention to patching and updates is essential to mitigate this risk.
Affected Version(s)
Tor Tor
