5.9
CVE-2026-77587
- EPSS -
- Veröffentlicht 20.08.2026 20:47:39
- Zuletzt bearbeitet 20.08.2026 21:17:10
- CVE-Watchlists
- Unerledigt
Tor before 0.4.9.11 is prone to a use-after-free (and potential double free) of a conflux object when a recovery leg revives a conflux set whose last linked leg has already been closed. A malicious exit node could use this to crash a client. This is TROVE-2026-026.
Daten sind bereitgestellt durch das CVE Programm von einer CVE Numbering Authority (CNA) (Unstrukturiert).
Herstellertorproject
≫
Produkt
Tor
Default Statusunaffected
Version
0.4.8.1-alpha
Version <
0.4.9.11
Status
affected
VulnDex Vulnerability Enrichment
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| MITRE | 5.9 | 2.2 | 3.6 |
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H
|
CWE-911 Improper Update of Reference Count
The product uses a reference count to manage a resource, but it does not update or incorrectly updates the reference count.
https://gitlab.torproject.org/tpo/core/tor/-/raw/tor-0.4.9.11/ChangeLog