CyberRota Analysis
AI-GeneratedA race condition in Tor versions prior to 0.4.9.11 allows a malicious rendezvous point to potentially impersonate an onion service, enabling man-in-the-middle attacks. This vulnerability poses a significant risk to the confidentiality and integrity of communications for users relying on Tor for anonymity. Organizations and individuals utilizing Tor for sensitive operations should prioritize updating to the latest version to mitigate this high-severity threat.
Original NVD Description
Tor before 0.4.9.11 is prone to a race condition where in just the right circumstances a rendezvous point could man-in-the-middle (impersonate) the onion service that the client was trying to reach.
Related CVEs
Other vulnerabilities affecting the same vendor(s)