Back to Database
Status published
Medium
CVE-2007-4097
Tor before 0.1.2.15 sends "destroy cells" containing the reason for...
Vulnerability Description
Tor before 0.1.2.15 sends "destroy cells" containing the reason for tearing down a circuit, which allows remote attackers to obtain sensitive information, contrary to specifications.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2007-4097
Credits & Attribution
No credits recorded in the NVD database.
References
More from tor
View All →CVE-2012-3519
routerlist.c in Tor before 0.2.2.38 uses a different amount of...
Medium
5
CVE-2012-3518
The networkstatus_parse_vote_from_string function in routerparse.c in Tor before 0.2.2.38 does...
Medium
5
CVE-2012-3517
Use-after-free vulnerability in dns.c in Tor before 0.2.2.38 might allow...
Medium
5
CVE-2011-4897
Tor before 0.2.2.25-alpha, when configured as a relay without the...
Medium
4.3
CVE-2011-4896
Tor before 0.2.2.24-alpha continues to use a reachable bridge that...
Medium
4.3
Affected Vendor
Affected Software
tor
Vulnerable Versions:
0.1.0.10, 0.1.0.11, 0.1.0.12, 0.1.0.13, 0.1.0.14, 0.1.0.18, 0.1.1.1_alpha, 0.1.1.2_alpha, 0.1.1.3_alpha, 0.1.1.4_alpha, 0.1.1.5_alpha, 0.1.1.20, 0.1.1.23, 0.1.2.1_alpha-cvs, 0.1.2.14
Timeline
Official Publish:
July 30th, 2007
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.