CVE-2006-3414
Published: 7 July 2006
Tor before 0.1.1.20 supports server descriptors that contain hostnames instead of IP addresses, which allows remote attackers to arbitrarily group users by providing preferential address resolution.
Priority
Status
Package | Release | Status |
---|---|---|
tor Launchpad, Ubuntu, Debian |
dapper |
Ignored
(end of life)
|
edgy |
Released
(0.1.1.20-1)
|
|
feisty |
Released
(0.1.1.20-1)
|
|
gutsy |
Released
(0.1.1.20-1)
|
|
hardy |
Released
(0.1.1.20-1)
|
|
intrepid |
Released
(0.1.1.20-1)
|
|
jaunty |
Does not exist
|
|
karmic |
Does not exist
|
|
upstream |
Released
(0.1.1.20)
|