Tor 0.2.2.x before 0.2.2.7-alpha, when functioning as a directory mirror, does not prevent logging of the client IP address upon detection of erroneous client behavior, which might make it easier for local users to discover the identities of clients in opportunistic circumstances by reading log files.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2010-0415 | Tor 0.2.2.x before 0.2.2.7-alpha, when functioning as a directory mirror, does not prevent logging of the client IP address upon detection of erroneous client behavior, which might make it easier for local users to discover the identities of clients in opportunistic circumstances by reading log files. |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| http://archives.seul.org/or/talk/Jan-2010/msg00162.html |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-17T00:15:38.157Z
Reserved: 2010-01-25T00:00:00Z
Link: CVE-2010-0384
No data.
Status : Deferred
Published: 2010-01-25T19:30:01.667
Modified: 2025-04-11T00:51:21.963
Link: CVE-2010-0384
No data.
OpenCVE Enrichment
No data.
EUVD