Candidate: CVE-2021-34548 PublicDate: 2021-06-29 11:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-34548 https://blog.torproject.org/node/2041 https://bugs.torproject.org/tpo/core/tor/40389 Description: An issue was discovered in Tor before 0.4.6.5, aka TROVE-2021-003. An attacker can forge RELAY_END or RELAY_RESOLVED to bypass the intended access control for ending a stream. Ubuntu-Description: Notes: Mitigation: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H [7.5 HIGH] Patches_tor: upstream_tor: needs-triage trusty_tor: ignored (out of standard support) trusty/esm_tor: needs-triage xenial_tor: ignored (out of standard support) bionic_tor: needs-triage focal_tor: needs-triage groovy_tor: ignored (reached end-of-life) hirsute_tor: ignored (reached end-of-life) impish_tor: needs-triage jammy_tor: needs-triage devel_tor: needs-triage