Back to search
CVE-2017-0377
Published: Jul 2, 2017
Modified: Aug 5, 2024
PUBLISHED
Description
Tor 0.3.x before 0.3.0.9 has a guard-selection algorithm that only considers the exit relay (not the exit relay's family), which might allow remote attackers to defeat intended anonymity properties by leveraging the existence of large families.
| Vendor | Product | Versions |
|---|---|---|
n/a | Tor | affected Tor |
References
https://trac.torproject.org/projects/tor/ticket/22753
x_refsource_CONFIRM
https://security-tracker.debian.org/CVE-2017-0377
x_refsource_CONFIRM
https://blog.torproject.org/blog/tor-0309-released-security-update-clients
x_refsource_CONFIRM
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now