
CVE-2017-0376 – Debian Security Advisory 3877-1
https://notcve.org/view.php?id=CVE-2017-0376
09 Jun 2017 — The hidden-service feature in Tor before 0.3.0.8 allows a denial of service (assertion failure and daemon exit) in the connection_edge_process_relay_cell function via a BEGIN_DIR cell on a rendezvous circuit. La función de servicio oculto en Tor antes de la versión 0.3.0.8 permite una denegación de servicio (fallo de aserción y salida de demonio) en la función connection_edge_process_relay_cell a través de una célula BEGIN_DIR en un circuito de rendezvous It has been discovered that Tor, a connection-based ... • http://www.debian.org/security/2017/dsa-3877 • CWE-617: Reachable Assertion •

CVE-2016-8860 – Gentoo Linux Security Advisory 201612-45
https://notcve.org/view.php?id=CVE-2016-8860
24 Dec 2016 — Tor before 0.2.8.9 and 0.2.9.x before 0.2.9.4-alpha had internal functions that were entitled to expect that buf_t data had NUL termination, but the implementation of or/buffers.c did not ensure that NUL termination was present, which allows remote attackers to cause a denial of service (client, hidden service, relay, or authority crash) via crafted data. Tor en versiones anteriores a 0.2.8.9 y 0.2.9.x en versiones anteriores a 0.2.9.4-alpha tenía funciones internas autorizadas a esperar que buf_t data tení... • http://openwall.com/lists/oss-security/2016/10/19/11 • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer •

CVE-2015-2928 – Mandriva Linux Security Advisory 2015-205
https://notcve.org/view.php?id=CVE-2015-2928
06 Apr 2015 — The Hidden Service (HS) server implementation in Tor before 0.2.4.27, 0.2.5.x before 0.2.5.12, and 0.2.6.x before 0.2.6.7 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via unspecified vectors. La implementación del servidor Hidden Service (HS) en Tor versiones anteriores a 0.2.4.27, versiones 0.2.5.x anteriores a 0.2.5.12 y versiones 0.2.6.x anteriores a 0.2.6.7, permite a atacantes remotos causar una denegación de servicio (falla de aserción y salida del demonio )... • http://openwall.com/lists/oss-security/2015/04/06/5 •

CVE-2015-2929 – Mandriva Linux Security Advisory 2015-205
https://notcve.org/view.php?id=CVE-2015-2929
06 Apr 2015 — The Hidden Service (HS) client implementation in Tor before 0.2.4.27, 0.2.5.x before 0.2.5.12, and 0.2.6.x before 0.2.6.7 allows remote servers to cause a denial of service (assertion failure and application exit) via a malformed HS descriptor. La implementación del cliente Hidden Service (HS) en Tor versiones anteriores a 0.2.4.27, versiones 0.2.5.x anteriores a 0.2.5.12 y versiones 0.2.6.x anteriores a 0.2.6.7, permite a los servidores remotos causar una denegación de servicio (falla de aserción y salida ... • http://openwall.com/lists/oss-security/2015/04/06/5 •