CVE-2006-3414
EPSS 0.49%Published: 7/7/2006Modified: 4/28/2026
Description
Tor before 0.1.1.20 supports server descriptors that contain hostnames instead of IP addresses, which allows remote attackers to arbitrarily group users by providing preferential address resolution.
Affected packages (1)
- Debian/torfrom 0, < 0.1.1.20-1