Skip to main content

Tor Browser Bundle "onreadystatechange" Event Handling Code Execution Vulnerability

Last Update Date: 8 Aug 2013 Release Date: 7 Aug 2013 3868 Views

RISK: Medium Risk

TYPE: Clients - Browsers

TYPE: Browsers

A vulnerability has been identified in Tor Browser Bundle, which can be exploited by malicious people to compromise a user's system.

 

An error exists when handling the "onreadystatechange" event and reloading pages.


Impact

  • Remote Code Execution

System / Technologies affected

  • Versions prior to 2.3.25-10

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • Update to version 2.3.25-10.

Vulnerability Identifier


Source


Related Link