Security Advisory

CVE-2008-5397

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-12-09 00:00:00
Last updated 2024-08-07 10:49:12
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Tor before 0.2.0.32 does not properly process the (1) User and (2) Group configuration options, which might allow local users to gain privileges by leveraging unintended supplementary group memberships of the Tor process.