Описание
Tor before 0.4.9.11 is prone to a use-after-free (and potential double free) of a conflux object when a recovery leg revives a conflux set whose last linked leg has already been closed. A malicious exit node could use this to crash a client. This is TROVE-2026-026.
EPSS
Процентиль: 13%
0.00222
Низкий
5.9 Medium
CVSS3
Дефекты
CWE-911
Связанные уязвимости
CVSS3: 5.9
debian
7 дней назад
Tor before 0.4.9.11 is prone to a use-after-free (and potential double ...
CVSS3: 5.9
github
7 дней назад
Tor before 0.4.9.11 is prone to a use-after-free (and potential double free) of a conflux object when a recovery leg revives a conflux set whose last linked leg has already been closed. A malicious exit node could use this to crash a client. This is TROVE-2026-026.
EPSS
Процентиль: 13%
0.00222
Низкий
5.9 Medium
CVSS3
Дефекты
CWE-911