Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9mf5-x83c-fg2x

Опубликовано: 20 авг. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

Tor before 0.4.9.11 is prone to a use-after-free (and potential double free) of a conflux object when a recovery leg revives a conflux set whose last linked leg has already been closed. A malicious exit node could use this to crash a client. This is TROVE-2026-026.

Tor before 0.4.9.11 is prone to a use-after-free (and potential double free) of a conflux object when a recovery leg revives a conflux set whose last linked leg has already been closed. A malicious exit node could use this to crash a client. This is TROVE-2026-026.

EPSS

Процентиль: 13%
0.00222
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-911

Связанные уязвимости

CVSS3: 5.9
ubuntu
7 дней назад

security update

CVSS3: 5.9
nvd
7 дней назад

Tor before 0.4.9.11 is prone to a use-after-free (and potential double free) of a conflux object when a recovery leg revives a conflux set whose last linked leg has already been closed. A malicious exit node could use this to crash a client. This is TROVE-2026-026.

CVSS3: 5.9
debian
7 дней назад

Tor before 0.4.9.11 is prone to a use-after-free (and potential double ...

EPSS

Процентиль: 13%
0.00222
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-911