CVE-2006-3412 Information

Description

Tor before 0.1.1.20 does not sufficiently obey certain firewall options which allows remote attackers to bypass intended access restrictions for dirservers direct connections or proxy servers.

Reference

http://secunia.com/advisories/20514 http://security.gentoo.org/glsa/glsa-200606-04.xml http://tor.eff.org/cvs/tor/ChangeLog http://www.osvdb.org/25874

Share on: