CVE-2014-5751: Medium severity tor browser vulnerability
The Tor Browser the Short Guide (aka com.wTorShortUserManual) application 0.1 for Android does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafted certificate.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-5751?
The severity of CVE-2014-5751 is considered medium due to the potential for man-in-the-middle attacks.
How do I fix CVE-2014-5751?
To fix CVE-2014-5751, it's recommended to update the Tor Browser to a newer version that properly verifies X.509 certificates.
What types of attacks are possible due to CVE-2014-5751?
CVE-2014-5751 may allow man-in-the-middle attackers to spoof servers and intercept sensitive information.
Which version of Tor Browser is affected by CVE-2014-5751?
CVE-2014-5751 affects version 0.1 of the Tor Browser the Short Guide application for Android.
What platforms are impacted by CVE-2014-5751?
CVE-2014-5751 impacts the Android platform specifically due to the affected Tor Browser application.