MUTE 0.4 uses improper flood protection algorithms, which allows remote attackers to obtain sensitive information (privacy leak and search result data) by controlling a drop chain neighbor that is near the end of a message chain.
Link | Tags |
---|---|
http://www.osvdb.org/23335 | vdb entry |
http://sourceforge.net/mailarchive/message.php?msg_id=11200225 | mailing list |
http://sourceforge.net/mailarchive/message.php?msg_id=11184523 | mailing list |