CVE Vulnerabilities

CVE-2007-4099

Published: Jul 30, 2007 | Modified: Mar 08, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Tor before 0.1.2.15 can select a guard node beyond the first listed never-before-connected-to guard node, which allows remote attackers with control of certain guard nodes to obtain sensitive information and possibly leverage further attacks.

Affected Software

Name Vendor Start Version End Version
Tor Tor 0.1.0.10 (including) 0.1.0.10 (including)
Tor Tor 0.1.0.11 (including) 0.1.0.11 (including)
Tor Tor 0.1.0.12 (including) 0.1.0.12 (including)
Tor Tor 0.1.0.13 (including) 0.1.0.13 (including)
Tor Tor 0.1.0.14 (including) 0.1.0.14 (including)
Tor Tor 0.1.0.18 (including) 0.1.0.18 (including)
Tor Tor 0.1.1.1_alpha (including) 0.1.1.1_alpha (including)
Tor Tor 0.1.1.2_alpha (including) 0.1.1.2_alpha (including)
Tor Tor 0.1.1.3_alpha (including) 0.1.1.3_alpha (including)
Tor Tor 0.1.1.4_alpha (including) 0.1.1.4_alpha (including)
Tor Tor 0.1.1.5_alpha (including) 0.1.1.5_alpha (including)
Tor Tor 0.1.1.20 (including) 0.1.1.20 (including)
Tor Tor 0.1.1.23 (including) 0.1.1.23 (including)
Tor Tor 0.1.2.1_alpha-cvs (including) 0.1.2.1_alpha-cvs (including)
Tor Tor 0.1.2.14 (including) 0.1.2.14 (including)
Tor Ubuntu dapper *
Tor Ubuntu edgy *
Tor Ubuntu feisty *
Tor Ubuntu gutsy *
Tor Ubuntu hardy *
Tor Ubuntu intrepid *
Tor Ubuntu upstream *

References