cbcvebase.
CVE-2006-3414
published 2006-07-07

CVE-2006-3414: Tor before 0.1.1.20 supports server descriptors that contain hostnames instead of IP addresses, which allows remote attackers to arbitrarily group users by…

medium5CVSS 3.1
AVNACLAuNCPINAN
Tor before 0.1.1.20 supports server descriptors that contain hostnames instead of IP addresses, which allows remote attackers to arbitrarily group users by providing preferential address resolution.

Affected

73 ranges· showing 25
VendorProductVersion rangeFixed in
debiantor< tor 0.1.1.20-1 (bookworm)tor 0.1.1.20-1 (bookworm)
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor
tortor

CVSS provenance

nvd5.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv5.0MEDIUM