{"id":"CVE-2009-2425","details":"Tor before 0.2.0.35 allows remote attackers to cause a denial of service (application crash) via a malformed router descriptor.","modified":"2026-01-27T04:09:52.546997Z","published":"2009-07-10T17:30:00Z","withdrawn":"2026-01-27T04:09:52.546997Z","references":[{"type":"ADVISORY","url":"http://secunia.com/advisories/35546"},{"type":"FIX","url":"http://www.vupen.com/english/advisories/2009/1716"},{"type":"FIX","url":"http://archives.seul.org/or/announce/Jun-2009/msg00000.html"},{"type":"FIX","url":"http://www.osvdb.org/55340"},{"type":"FIX","url":"http://www.securityfocus.com/bid/35505"},{"type":"WEB","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/51376"}],"schema_version":"1.7.3"}