CVE Vulnerabilities

CVE-2007-4099

Published: Jul 30, 2007 | Modified: Mar 08, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu

Tor before 0.1.2.15 can select a guard node beyond the first listed never-before-connected-to guard node, which allows remote attackers with control of certain guard nodes to obtain sensitive information and possibly leverage further attacks.

Affected Software

Name Vendor Start Version End Version
Tor Tor 0.1.0.10 (including) 0.1.0.10 (including)
Tor Tor 0.1.0.11 (including) 0.1.0.11 (including)
Tor Tor 0.1.0.12 (including) 0.1.0.12 (including)
Tor Tor 0.1.0.13 (including) 0.1.0.13 (including)
Tor Tor 0.1.0.14 (including) 0.1.0.14 (including)
Tor Tor 0.1.0.18 (including) 0.1.0.18 (including)
Tor Tor 0.1.1.1_alpha (including) 0.1.1.1_alpha (including)
Tor Tor 0.1.1.2_alpha (including) 0.1.1.2_alpha (including)
Tor Tor 0.1.1.3_alpha (including) 0.1.1.3_alpha (including)
Tor Tor 0.1.1.4_alpha (including) 0.1.1.4_alpha (including)
Tor Tor 0.1.1.5_alpha (including) 0.1.1.5_alpha (including)
Tor Tor 0.1.1.20 (including) 0.1.1.20 (including)
Tor Tor 0.1.1.23 (including) 0.1.1.23 (including)
Tor Tor 0.1.2.1_alpha-cvs (including) 0.1.2.1_alpha-cvs (including)
Tor Tor 0.1.2.14 (including) 0.1.2.14 (including)

References