Описание
Tor Browser before 7.0.9 on macOS and Linux allows remote attackers to bypass the intended anonymity feature and discover a client IP address via vectors involving a crafted web site that leverages file:// mishandling in Firefox, aka TorMoil. NOTE: Tails is unaffected.
Релиз | Статус | Примечание |
---|---|---|
bionic | released | 62.0+build2-0ubuntu0.18.04.3 |
devel | not-affected | |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE | |
focal | not-affected | |
groovy | not-affected | |
precise/esm | DNE | |
trusty | ignored | end of standard support |
trusty/esm | DNE | |
upstream | released | 62 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | released | 1:60.2.1+build1-0ubuntu0.18.04.2 |
devel | not-affected | |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE | |
focal | not-affected | |
groovy | not-affected | |
precise/esm | DNE | |
trusty | ignored | end of standard support |
trusty/esm | DNE | |
upstream | released | 60.2.1 |
Показывать по
Ссылки на источники
EPSS
4.3 Medium
CVSS2
6.5 Medium
CVSS3
Связанные уязвимости
Tor Browser before 7.0.9 on macOS and Linux allows remote attackers to bypass the intended anonymity feature and discover a client IP address via vectors involving a crafted web site that leverages file:// mishandling in Firefox, aka TorMoil. NOTE: Tails is unaffected.
Tor Browser before 7.0.9 on macOS and Linux allows remote attackers to bypass the intended anonymity feature and discover a client IP address via vectors involving a crafted web site that leverages file:// mishandling in Firefox, aka TorMoil. NOTE: Tails is unaffected.
Tor Browser before 7.0.9 on macOS and Linux allows remote attackers to ...
Tor Browser before 7.0.9 on macOS and Linux allows remote attackers to bypass the intended anonymity feature and discover a client IP address via vectors involving a crafted web site that leverages file:// mishandling in Firefox, aka TorMoil. NOTE: Tails is unaffected.
Уязвимость automount-демона браузеров Tor, Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю обойти ограничения безопасности
EPSS
4.3 Medium
CVSS2
6.5 Medium
CVSS3