Description
Tor Browser before 8.0.1 has an information exposure vulnerability. It allows remote attackers to detect the browser's UI locale by measuring a button width, even if the user has a "Don't send my language" setting.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No solution or workaround provided in the CVE record.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2019-4018 | Tor Browser before 8.0.1 has an information exposure vulnerability. It allows remote attackers to detect the browser's UI locale by measuring a button width, even if the user has a "Don't send my language" setting. |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-04T23:17:39.997Z
Reserved: 2019-05-27T00:00:00.000Z
Link: CVE-2019-12383
No data.
Status : Modified
Published: 2019-05-28T03:29:00.513
Modified: 2026-06-17T02:14:31.950
Link: CVE-2019-12383
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-203
Observable Discrepancy
EUVD