Vulnerability Details CVE-2008-5397
Tor before 0.2.0.32 does not properly process the (1) User and (2) Group configuration options, which might allow local users to gain privileges by leveraging unintended supplementary group memberships of the Tor process.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 13.6%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2008-5397
-
-
-
Tor
»
Tor
»
Version: 0.0.2_pre13
cpe:2.3:a:tor:tor:0.0.2_pre13
-
Tor
»
Tor
»
Version: 0.0.2_pre14
cpe:2.3:a:tor:tor:0.0.2_pre14
-
Tor
»
Tor
»
Version: 0.0.2_pre15
cpe:2.3:a:tor:tor:0.0.2_pre15
-
Tor
»
Tor
»
Version: 0.0.2_pre16
cpe:2.3:a:tor:tor:0.0.2_pre16
-
Tor
»
Tor
»
Version: 0.0.2_pre17
cpe:2.3:a:tor:tor:0.0.2_pre17
-
Tor
»
Tor
»
Version: 0.0.2_pre18
cpe:2.3:a:tor:tor:0.0.2_pre18
-
Tor
»
Tor
»
Version: 0.0.2_pre19
cpe:2.3:a:tor:tor:0.0.2_pre19
-
Tor
»
Tor
»
Version: 0.0.2_pre20
cpe:2.3:a:tor:tor:0.0.2_pre20
-
Tor
»
Tor
»
Version: 0.0.2_pre21
cpe:2.3:a:tor:tor:0.0.2_pre21
-
Tor
»
Tor
»
Version: 0.0.2_pre22
cpe:2.3:a:tor:tor:0.0.2_pre22
-
Tor
»
Tor
»
Version: 0.0.2_pre23
cpe:2.3:a:tor:tor:0.0.2_pre23
-
Tor
»
Tor
»
Version: 0.0.2_pre24
cpe:2.3:a:tor:tor:0.0.2_pre24
-
Tor
»
Tor
»
Version: 0.0.2_pre25
cpe:2.3:a:tor:tor:0.0.2_pre25
-
Tor
»
Tor
»
Version: 0.0.2_pre26
cpe:2.3:a:tor:tor:0.0.2_pre26
-
Tor
»
Tor
»
Version: 0.0.2_pre27
cpe:2.3:a:tor:tor:0.0.2_pre27
-
-
-
-
-
cpe:2.3:a:tor:tor:0.0.6.1
-
cpe:2.3:a:tor:tor:0.0.6.2
-
-
cpe:2.3:a:tor:tor:0.0.7.1
-
cpe:2.3:a:tor:tor:0.0.7.2
-
cpe:2.3:a:tor:tor:0.0.7.3
-
-
cpe:2.3:a:tor:tor:0.0.8.1
-
-
cpe:2.3:a:tor:tor:0.0.9.1
-
cpe:2.3:a:tor:tor:0.0.9.10
-
cpe:2.3:a:tor:tor:0.0.9.2
-
cpe:2.3:a:tor:tor:0.0.9.3
-
cpe:2.3:a:tor:tor:0.0.9.4
-
cpe:2.3:a:tor:tor:0.0.9.5
-
cpe:2.3:a:tor:tor:0.0.9.6
-
cpe:2.3:a:tor:tor:0.0.9.7
-
cpe:2.3:a:tor:tor:0.0.9.8
-
cpe:2.3:a:tor:tor:0.0.9.9
-
cpe:2.3:a:tor:tor:0.1.0.1
-
cpe:2.3:a:tor:tor:0.1.0.10
-
cpe:2.3:a:tor:tor:0.1.0.11
-
cpe:2.3:a:tor:tor:0.1.0.12
-
cpe:2.3:a:tor:tor:0.1.0.13
-
cpe:2.3:a:tor:tor:0.1.0.14
-
cpe:2.3:a:tor:tor:0.1.0.15
-
cpe:2.3:a:tor:tor:0.1.0.16
-
cpe:2.3:a:tor:tor:0.1.0.17
-
cpe:2.3:a:tor:tor:0.1.0.18
-
cpe:2.3:a:tor:tor:0.1.0.19
-
cpe:2.3:a:tor:tor:0.1.0.2
-
cpe:2.3:a:tor:tor:0.1.0.3
-
cpe:2.3:a:tor:tor:0.1.0.4
-
cpe:2.3:a:tor:tor:0.1.0.5
-
cpe:2.3:a:tor:tor:0.1.0.6
-
cpe:2.3:a:tor:tor:0.1.0.7
-
cpe:2.3:a:tor:tor:0.1.0.8
-
cpe:2.3:a:tor:tor:0.1.0.9
-
cpe:2.3:a:tor:tor:0.1.1.1
-
cpe:2.3:a:tor:tor:0.1.1.10
-
Tor
»
Tor
»
Version: 0.1.1.10_alpha
cpe:2.3:a:tor:tor:0.1.1.10_alpha
-
cpe:2.3:a:tor:tor:0.1.1.11
-
cpe:2.3:a:tor:tor:0.1.1.12
-
cpe:2.3:a:tor:tor:0.1.1.13
-
cpe:2.3:a:tor:tor:0.1.1.14
-
cpe:2.3:a:tor:tor:0.1.1.15
-
cpe:2.3:a:tor:tor:0.1.1.16
-
cpe:2.3:a:tor:tor:0.1.1.17
-
cpe:2.3:a:tor:tor:0.1.1.18
-
cpe:2.3:a:tor:tor:0.1.1.19
-
Tor
»
Tor
»
Version: 0.1.1.1_alpha
cpe:2.3:a:tor:tor:0.1.1.1_alpha
-
cpe:2.3:a:tor:tor:0.1.1.2
-
cpe:2.3:a:tor:tor:0.1.1.20
-
cpe:2.3:a:tor:tor:0.1.1.21
-
cpe:2.3:a:tor:tor:0.1.1.22
-
cpe:2.3:a:tor:tor:0.1.1.23
-
cpe:2.3:a:tor:tor:0.1.1.26
-
Tor
»
Tor
»
Version: 0.1.1.2_alpha
cpe:2.3:a:tor:tor:0.1.1.2_alpha
-
cpe:2.3:a:tor:tor:0.1.1.3
-
Tor
»
Tor
»
Version: 0.1.1.3_alpha
cpe:2.3:a:tor:tor:0.1.1.3_alpha
-
cpe:2.3:a:tor:tor:0.1.1.4
-
Tor
»
Tor
»
Version: 0.1.1.4_alpha
cpe:2.3:a:tor:tor:0.1.1.4_alpha
-
cpe:2.3:a:tor:tor:0.1.1.5
-
Tor
»
Tor
»
Version: 0.1.1.5_alpha
cpe:2.3:a:tor:tor:0.1.1.5_alpha
-
cpe:2.3:a:tor:tor:0.1.1.6
-
Tor
»
Tor
»
Version: 0.1.1.6_alpha
cpe:2.3:a:tor:tor:0.1.1.6_alpha
-
cpe:2.3:a:tor:tor:0.1.1.7
-
Tor
»
Tor
»
Version: 0.1.1.7_alpha
cpe:2.3:a:tor:tor:0.1.1.7_alpha
-
cpe:2.3:a:tor:tor:0.1.1.8
-
Tor
»
Tor
»
Version: 0.1.1.8_alpha
cpe:2.3:a:tor:tor:0.1.1.8_alpha
-
cpe:2.3:a:tor:tor:0.1.1.9
-
Tor
»
Tor
»
Version: 0.1.1.9_alpha
cpe:2.3:a:tor:tor:0.1.1.9_alpha
-
cpe:2.3:a:tor:tor:0.1.2.14
-
cpe:2.3:a:tor:tor:0.1.2.15
-
cpe:2.3:a:tor:tor:0.1.2.17
-
cpe:2.3:a:tor:tor:0.1.2.18
-
cpe:2.3:a:tor:tor:0.1.2.19
-
Tor
»
Tor
»
Version: 0.1.2.1_alpha-cvs
cpe:2.3:a:tor:tor:0.1.2.1_alpha-cvs
-
cpe:2.3:a:tor:tor:0.1.2.30