Search CVE reports


Toggle filters

421 – 430 of 465 results


CVE-2007-4099

Medium priority

Some fixes available 3 of 6

Tor before 0.1.2.15 can select a guard node beyond the first listed never-before-connected-to guard node, which allows remote attackers with control of certain guard nodes to obtain sensitive information and possibly leverage...

1 affected package

tor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tor
Show less packages

CVE-2007-4098

Medium priority

Some fixes available 3 of 6

Tor before 0.1.2.15 does not properly distinguish "streamids from different exits," which might allow remote attackers with control over Tor routers to inject cells into arbitrary streams.

1 affected package

tor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tor
Show less packages

CVE-2007-4097

Medium priority

Some fixes available 3 of 6

Tor before 0.1.2.15 sends "destroy cells" containing the reason for tearing down a circuit, which allows remote attackers to obtain sensitive information, contrary to specifications.

1 affected package

tor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tor
Show less packages

CVE-2007-4096

Medium priority

Some fixes available 3 of 6

Buffer overflow in Tor before 0.1.2.15, when using BSD natd support, allows remote attackers to cause a denial of service via unspecified vectors.

1 affected package

tor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tor
Show less packages

CVE-2007-3165

Medium priority
Ignored

Tor before 0.1.2.14 can construct circuits in which an entry guard is in the same family as the exit node, which might compromise the anonymity of traffic sources and destinations by exposing traffic to inappropriate remote observers.

1 affected package

tor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tor
Show less packages

CVE-2007-1799

Medium priority
Fixed

Directory traversal vulnerability in torrent.cpp in KTorrent before 2.1.3 only checks for the ".." string, which allows remote attackers to overwrite arbitrary files via modified ".." sequences in a torrent filename,...

1 affected package

ktorrent

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ktorrent
Show less packages

CVE-2007-1385

Medium priority
Fixed

chunkcounter.cpp in KTorrent before 2.1.2 allows remote attackers to cause a denial of service (crash) and heap corruption via a negative or large idx value.

1 affected package

ktorrent

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ktorrent
Show less packages

CVE-2007-1384

Medium priority
Fixed

Directory traversal vulnerability in torrent.cpp in KTorrent before 2.1.2 allows remote attackers to overwrite arbitrary files via ".." sequences in a torrent filename.

1 affected package

ktorrent

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
ktorrent
Show less packages

CVE-2007-1103

Low priority
Ignored

Tor does not verify a node's uptime and bandwidth advertisements, which allows remote attackers who operate a low resource node to make false claims of greater resources, which places the node into use for many circuits and...

1 affected package

tor

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
tor
Show less packages

CVE-2006-6604

Medium priority
Fixed

Directory traversal vulnerability in downloaddetails.php in TorrentFlux 2.2 allows remote authenticated users to read arbitrary files via .. (dot dot) sequences in the alias parameter, a different vector than CVE-2006-6328.

1 affected package

torrentflux

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
torrentflux
Show less packages