Tor Cryptographic Handshake Remote Information Disclosure Vulnerability

Solution:
The vendor has released an advisory and fixes to address this issue. Please see the referenced advisory for further information.

Gentoo Linux has released advisory GLSA 200508-16 to address this issue. Users of affected packages are urged to execute the following commands with superuser privileges:
emerge --sync
emerge --ask --oneshot --verbose ">=net-misc/tor-0.1.0.14"
Please see the referenced advisory for further information.


Tor Tor 0.1 .0.13

Tor Tor 0.1 .0.10

Tor Tor 0.1 .0.11

Tor Tor 0.1 .0.12

Tor Tor 0.1.1 .1-alpha

Tor Tor 0.1.1 .4-alpha

Tor Tor 0.1.1 .3-alpha

Tor Tor 0.1.1 .2-alpha


 

Privacy Statement
Copyright 2010, SecurityFocus