CVE Vulnerabilities

CVE-2008-5397

Published: Dec 09, 2008 | Modified: Aug 08, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.2 HIGH
AV:L/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
LOW

Tor before 0.2.0.32 does not properly process the (1) User and (2) Group configuration options, which might allow local users to gain privileges by leveraging unintended supplementary group memberships of the Tor process.

Affected Software

Name Vendor Start Version End Version
Tor Tor * 0.1.2.31 (including)
Tor Tor 0.0.2 (including) 0.0.2 (including)
Tor Tor 0.0.2_pre13 (including) 0.0.2_pre13 (including)
Tor Tor 0.0.2_pre14 (including) 0.0.2_pre14 (including)
Tor Tor 0.0.2_pre15 (including) 0.0.2_pre15 (including)
Tor Tor 0.0.2_pre16 (including) 0.0.2_pre16 (including)
Tor Tor 0.0.2_pre17 (including) 0.0.2_pre17 (including)
Tor Tor 0.0.2_pre18 (including) 0.0.2_pre18 (including)
Tor Tor 0.0.2_pre19 (including) 0.0.2_pre19 (including)
Tor Tor 0.0.2_pre20 (including) 0.0.2_pre20 (including)
Tor Tor 0.0.2_pre21 (including) 0.0.2_pre21 (including)
Tor Tor 0.0.2_pre22 (including) 0.0.2_pre22 (including)
Tor Tor 0.0.2_pre23 (including) 0.0.2_pre23 (including)
Tor Tor 0.0.2_pre24 (including) 0.0.2_pre24 (including)
Tor Tor 0.0.2_pre25 (including) 0.0.2_pre25 (including)
Tor Tor 0.0.2_pre26 (including) 0.0.2_pre26 (including)
Tor Tor 0.0.2_pre27 (including) 0.0.2_pre27 (including)
Tor Tor 0.0.3 (including) 0.0.3 (including)
Tor Tor 0.0.4 (including) 0.0.4 (including)
Tor Tor 0.0.5 (including) 0.0.5 (including)
Tor Tor 0.0.6 (including) 0.0.6 (including)
Tor Tor 0.0.6.1 (including) 0.0.6.1 (including)
Tor Tor 0.0.6.2 (including) 0.0.6.2 (including)
Tor Tor 0.0.7 (including) 0.0.7 (including)
Tor Tor 0.0.7.1 (including) 0.0.7.1 (including)
Tor Tor 0.0.7.2 (including) 0.0.7.2 (including)
Tor Tor 0.0.7.3 (including) 0.0.7.3 (including)
Tor Tor 0.0.8 (including) 0.0.8 (including)
Tor Tor 0.0.8.1 (including) 0.0.8.1 (including)
Tor Tor 0.0.9 (including) 0.0.9 (including)
Tor Tor 0.0.9.1 (including) 0.0.9.1 (including)
Tor Tor 0.0.9.2 (including) 0.0.9.2 (including)
Tor Tor 0.0.9.3 (including) 0.0.9.3 (including)
Tor Tor 0.0.9.4 (including) 0.0.9.4 (including)
Tor Tor 0.0.9.5 (including) 0.0.9.5 (including)
Tor Tor 0.0.9.6 (including) 0.0.9.6 (including)
Tor Tor 0.0.9.7 (including) 0.0.9.7 (including)
Tor Tor 0.0.9.8 (including) 0.0.9.8 (including)
Tor Tor 0.0.9.9 (including) 0.0.9.9 (including)
Tor Tor 0.0.9.10 (including) 0.0.9.10 (including)
Tor Tor 0.1.0.1 (including) 0.1.0.1 (including)
Tor Tor 0.1.0.2 (including) 0.1.0.2 (including)
Tor Tor 0.1.0.3 (including) 0.1.0.3 (including)
Tor Tor 0.1.0.4 (including) 0.1.0.4 (including)
Tor Tor 0.1.0.5 (including) 0.1.0.5 (including)
Tor Tor 0.1.0.6 (including) 0.1.0.6 (including)
Tor Tor 0.1.0.7 (including) 0.1.0.7 (including)
Tor Tor 0.1.0.8 (including) 0.1.0.8 (including)
Tor Tor 0.1.0.9 (including) 0.1.0.9 (including)
Tor Tor 0.1.0.10 (including) 0.1.0.10 (including)
Tor Tor 0.1.0.11 (including) 0.1.0.11 (including)
Tor Tor 0.1.0.12 (including) 0.1.0.12 (including)
Tor Tor 0.1.0.13 (including) 0.1.0.13 (including)
Tor Tor 0.1.0.14 (including) 0.1.0.14 (including)
Tor Tor 0.1.0.15 (including) 0.1.0.15 (including)
Tor Tor 0.1.0.16 (including) 0.1.0.16 (including)
Tor Tor 0.1.0.17 (including) 0.1.0.17 (including)
Tor Tor 0.1.0.18 (including) 0.1.0.18 (including)
Tor Tor 0.1.0.19 (including) 0.1.0.19 (including)
Tor Tor 0.1.1.1 (including) 0.1.1.1 (including)
Tor Tor 0.1.1.1_alpha (including) 0.1.1.1_alpha (including)
Tor Tor 0.1.1.2 (including) 0.1.1.2 (including)
Tor Tor 0.1.1.2_alpha (including) 0.1.1.2_alpha (including)
Tor Tor 0.1.1.3 (including) 0.1.1.3 (including)
Tor Tor 0.1.1.3_alpha (including) 0.1.1.3_alpha (including)
Tor Tor 0.1.1.4 (including) 0.1.1.4 (including)
Tor Tor 0.1.1.4_alpha (including) 0.1.1.4_alpha (including)
Tor Tor 0.1.1.5 (including) 0.1.1.5 (including)
Tor Tor 0.1.1.5_alpha (including) 0.1.1.5_alpha (including)
Tor Tor 0.1.1.6 (including) 0.1.1.6 (including)
Tor Tor 0.1.1.6_alpha (including) 0.1.1.6_alpha (including)
Tor Tor 0.1.1.7 (including) 0.1.1.7 (including)
Tor Tor 0.1.1.7_alpha (including) 0.1.1.7_alpha (including)
Tor Tor 0.1.1.8 (including) 0.1.1.8 (including)
Tor Tor 0.1.1.8_alpha (including) 0.1.1.8_alpha (including)
Tor Tor 0.1.1.9 (including) 0.1.1.9 (including)
Tor Tor 0.1.1.9_alpha (including) 0.1.1.9_alpha (including)
Tor Tor 0.1.1.10 (including) 0.1.1.10 (including)
Tor Tor 0.1.1.10_alpha (including) 0.1.1.10_alpha (including)
Tor Tor 0.1.1.11 (including) 0.1.1.11 (including)
Tor Tor 0.1.1.12 (including) 0.1.1.12 (including)
Tor Tor 0.1.1.13 (including) 0.1.1.13 (including)
Tor Tor 0.1.1.14 (including) 0.1.1.14 (including)
Tor Tor 0.1.1.15 (including) 0.1.1.15 (including)
Tor Tor 0.1.1.16 (including) 0.1.1.16 (including)
Tor Tor 0.1.1.17 (including) 0.1.1.17 (including)
Tor Tor 0.1.1.18 (including) 0.1.1.18 (including)
Tor Tor 0.1.1.19 (including) 0.1.1.19 (including)
Tor Tor 0.1.1.20 (including) 0.1.1.20 (including)
Tor Tor 0.1.1.21 (including) 0.1.1.21 (including)
Tor Tor 0.1.1.22 (including) 0.1.1.22 (including)
Tor Tor 0.1.1.23 (including) 0.1.1.23 (including)
Tor Tor 0.1.1.26 (including) 0.1.1.26 (including)
Tor Tor 0.1.2.1_alpha-cvs (including) 0.1.2.1_alpha-cvs (including)
Tor Tor 0.1.2.14 (including) 0.1.2.14 (including)
Tor Tor 0.1.2.15 (including) 0.1.2.15 (including)
Tor Tor 0.1.2.17 (including) 0.1.2.17 (including)
Tor Tor 0.1.2.18 (including) 0.1.2.18 (including)
Tor Tor 0.1.2.19 (including) 0.1.2.19 (including)
Tor Tor 0.1.2.30 (including) 0.1.2.30 (including)
Tor Ubuntu dapper *
Tor Ubuntu gutsy *
Tor Ubuntu hardy *
Tor Ubuntu intrepid *
Tor Ubuntu upstream *

References