{"containers":{"cna":{"affected":[{"product":"Tor","vendor":"The Tor Project","versions":[{"status":"affected","version":"before 0.2.4.26"},{"status":"affected","version":"0.2.5.x before 0.2.5.11"}]}],"datePublic":"2015-03-17T00:00:00.000Z","descriptions":[{"lang":"en","value":"buf_pullup in Tor before 0.2.4.26 and 0.2.5.x before 0.2.5.11 does not properly handle unexpected arrival times of buffers with invalid layouts, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via crafted packets."}],"problemTypes":[{"descriptions":[{"description":"Other","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2020-01-24T17:46:21.000Z","orgId":"79363d38-fa19-49d1-9214-5f28da3f3ac5","shortName":"debian"},"references":[{"tags":["x_refsource_MISC"],"url":"https://lists.torproject.org/pipermail/tor-talk/2015-March/037281.html"},{"tags":["x_refsource_MISC"],"url":"https://trac.torproject.org/projects/tor/ticket/15083"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"security@debian.org","ID":"CVE-2015-2688","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"Tor","version":{"version_data":[{"version_value":"before 0.2.4.26"},{"version_value":"0.2.5.x before 0.2.5.11"}]}}]},"vendor_name":"The Tor Project"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"buf_pullup in Tor before 0.2.4.26 and 0.2.5.x before 0.2.5.11 does not properly handle unexpected arrival times of buffers with invalid layouts, which allows remote attackers to cause a denial of service (assertion failure and daemon exit) via crafted packets."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"Other"}]}]},"references":{"reference_data":[{"name":"https://lists.torproject.org/pipermail/tor-talk/2015-March/037281.html","refsource":"MISC","url":"https://lists.torproject.org/pipermail/tor-talk/2015-March/037281.html"},{"name":"https://trac.torproject.org/projects/tor/ticket/15083","refsource":"MISC","url":"https://trac.torproject.org/projects/tor/ticket/15083"}]}}},"adp":[{"providerMetadata":{"orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE","dateUpdated":"2024-08-06T05:24:38.426Z"},"title":"CVE Program Container","references":[{"tags":["x_refsource_MISC","x_transferred"],"url":"https://lists.torproject.org/pipermail/tor-talk/2015-March/037281.html"},{"tags":["x_refsource_MISC","x_transferred"],"url":"https://trac.torproject.org/projects/tor/ticket/15083"}]}]},"cveMetadata":{"assignerOrgId":"79363d38-fa19-49d1-9214-5f28da3f3ac5","assignerShortName":"debian","cveId":"CVE-2015-2688","datePublished":"2020-01-24T17:46:21.000Z","dateReserved":"2015-03-24T00:00:00.000Z","dateUpdated":"2024-08-06T05:24:38.426Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"}