PT-2008-6515 · Tor · Tor

Rovv

·

Publicado

2008-12-08

·

Atualizado

2017-08-08

·

CVE-2008-5398

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Tor versions prior to 0.2.0.32
Description The issue arises from improper processing of the ClientDNSRejectInternalAddresses configuration option when an exit relay issues a policy-based refusal of a stream. This allows remote exit relays to potentially map an internal IP address to the destination hostname of a refused stream, although the exact impact is unknown.
Recommendations For versions prior to 0.2.0.32, update to version 0.2.0.32 or later to resolve the issue.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-5398

Produtos afetados

Tor