Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2006-3418

Опубликовано: 07 июл. 2006
Источник: ubuntu
Приоритет: untriaged
EPSS Низкий
CVSS2: 5

Описание

Tor before 0.1.1.20 does not validate that a server descriptor's fingerprint line matches its identity key, which allows remote attackers to spoof the fingerprint line, which might be trusted by users or other applications.

РелизСтатусПримечание
dapper

ignored

end of life
devel

DNE

edgy

released

0.1.1.20-1
feisty

released

0.1.1.20-1
gutsy

released

0.1.1.20-1
hardy

released

0.1.1.20-1
intrepid

released

0.1.1.20-1
jaunty

DNE

karmic

DNE

upstream

released

0.1.1.20

Показывать по

Ссылки на источники

EPSS

Процентиль: 63%
0.00459
Низкий

5 Medium

CVSS2

Связанные уязвимости

nvd
около 19 лет назад

Tor before 0.1.1.20 does not validate that a server descriptor's fingerprint line matches its identity key, which allows remote attackers to spoof the fingerprint line, which might be trusted by users or other applications.

debian
около 19 лет назад

Tor before 0.1.1.20 does not validate that a server descriptor's finge ...

github
больше 3 лет назад

Tor before 0.1.1.20 does not validate that a server descriptor's fingerprint line matches its identity key, which allows remote attackers to spoof the fingerprint line, which might be trusted by users or other applications.

EPSS

Процентиль: 63%
0.00459
Низкий

5 Medium

CVSS2