Please do not reply directly to this email. All additional comments should be made in the comments box of this bug report.
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=244502
Summary: CVE-2007-3165: tor < 0.1.2.14 information disclosure Product: Fedora Extras Version: f7 Platform: All URL: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-3165 OS/Version: Linux Status: NEW Severity: medium Priority: medium Component: tor AssignedTo: enrico.scholz@informatik.tu-chemnitz.de ReportedBy: ville.skytta@iki.fi QAContact: extras-qa@fedoraproject.org CC: fedora-security-list@redhat.com
http://nvd.nist.gov/nvd.cfm?cvename=CVE-2007-3165
"Tor before 0.1.2.14 can construct circuits in which an entry guard is in the same family as the exit node, which might compromise the anonymity of traffic sources and destinations by exposing traffic to inappropriate remote observers."
Please do not reply directly to this email. All additional comments should be made in the comments box of this bug report.
Summary: CVE-2007-3165: tor < 0.1.2.14 information disclosure
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=244502
andreas.bierfert@lowlatency.de changed:
What |Removed |Added ---------------------------------------------------------------------------- CC| |andreas.bierfert@lowlatency. | |de
Please do not reply directly to this email. All additional comments should be made in the comments box of this bug report.
Summary: CVE-2007-3165: tor < 0.1.2.14 information disclosure
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=244502
bugzilla@redhat.com changed:
What |Removed |Added ---------------------------------------------------------------------------- Product|Fedora Extras |Fedora
------- Additional Comments From opensource@till.name 2007-07-20 14:13 EST ------- It is already built: http://koji.fedoraproject.org/koji/buildinfo?buildID=7651
But I cannot find it in bodhi.
Please do not reply directly to this email. All additional comments should be made in the comments box of this bug report.
Summary: CVE-2007-3165: tor < 0.1.2.14 information disclosure
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=244502
opensource@till.name changed:
What |Removed |Added ---------------------------------------------------------------------------- CC| |opensource@till.name
Please do not reply directly to this email. All additional comments should be made in the comments box of this bug report.
Summary: CVE-2007-3165: tor < 0.1.2.14 information disclosure
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=244502
------- Additional Comments From updates@fedoraproject.org 2007-08-19 11:15 EST ------- tor-0.1.2.16-1.fc7 has been pushed to the Fedora 7 stable repository. If problems still persist, please make note of it in this bug report.
Please do not reply directly to this email. All additional comments should be made in the comments box of this bug report.
Summary: CVE-2007-3165: tor < 0.1.2.14 information disclosure
https://bugzilla.redhat.com/bugzilla/show_bug.cgi?id=244502
updates@fedoraproject.org changed:
What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |CLOSED Resolution| |ERRATA Fixed In Version| |0.1.2.16-1.fc7
security@lists.fedoraproject.org