CVE-2011-4897 Information

Description

Tor before 0.2.2.25-alpha when configured as a relay without the Nickname configuration option uses the local hostname as the Nickname value which allows remote attackers to obtain potentially sensitive information by reading this value.

Reference

https://blog.torproject.org/blog/tor-02225-alpha-out

Share on: