Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jxhg-8chc-rj8x

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Tor 0.1.0.13 and earlier, and experimental versions 0.1.1.4-alpha and earlier, does not reject certain weak keys when using ephemeral Diffie-Hellman (DH) handshakes, which allows malicious Tor servers to obtain the keys that a client uses for other systems in the circuit.

Tor 0.1.0.13 and earlier, and experimental versions 0.1.1.4-alpha and earlier, does not reject certain weak keys when using ephemeral Diffie-Hellman (DH) handshakes, which allows malicious Tor servers to obtain the keys that a client uses for other systems in the circuit.

EPSS

Процентиль: 60%
0.00408
Низкий

Связанные уязвимости

ubuntu
около 20 лет назад

Tor 0.1.0.13 and earlier, and experimental versions 0.1.1.4-alpha and earlier, does not reject certain weak keys when using ephemeral Diffie-Hellman (DH) handshakes, which allows malicious Tor servers to obtain the keys that a client uses for other systems in the circuit.

nvd
около 20 лет назад

Tor 0.1.0.13 and earlier, and experimental versions 0.1.1.4-alpha and earlier, does not reject certain weak keys when using ephemeral Diffie-Hellman (DH) handshakes, which allows malicious Tor servers to obtain the keys that a client uses for other systems in the circuit.

debian
около 20 лет назад

Tor 0.1.0.13 and earlier, and experimental versions 0.1.1.4-alpha and ...

EPSS

Процентиль: 60%
0.00408
Низкий