Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-vxgf-qp88-w686

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Tor 0.3.x before 0.3.0.9 has a guard-selection algorithm that only considers the exit relay (not the exit relay's family), which might allow remote attackers to defeat intended anonymity properties by leveraging the existence of large families.

Tor 0.3.x before 0.3.0.9 has a guard-selection algorithm that only considers the exit relay (not the exit relay's family), which might allow remote attackers to defeat intended anonymity properties by leveraging the existence of large families.

EPSS

Процентиль: 64%
0.00476
Низкий

7.5 High

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 8 лет назад

Tor 0.3.x before 0.3.0.9 has a guard-selection algorithm that only considers the exit relay (not the exit relay's family), which might allow remote attackers to defeat intended anonymity properties by leveraging the existence of large families.

CVSS3: 7.5
nvd
больше 8 лет назад

Tor 0.3.x before 0.3.0.9 has a guard-selection algorithm that only considers the exit relay (not the exit relay's family), which might allow remote attackers to defeat intended anonymity properties by leveraging the existence of large families.

CVSS3: 7.5
debian
больше 8 лет назад

Tor 0.3.x before 0.3.0.9 has a guard-selection algorithm that only con ...

EPSS

Процентиль: 64%
0.00476
Низкий

7.5 High

CVSS3

Дефекты

CWE-200