VendorsTorprojecttor0.4.4.1
Vulnerabilities

Torproject Tor 0.4.4.1

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

3CVEs
CVE-2021-28089
Tor before 0.4.5.7 allows a remote participant in the Tor directory protocol to exhaust CPU resources on a target, aka TROVE-2021-001.
Published 2021-03-19 · Modified
7.5EPSS 0.017
CVE-2020-15572
Tor before 0.4.3.6 has an out-of-bounds memory access that allows a remote denial-of-service (crash) attack against Tor instances built to use Mozilla Network Security Services (NSS), aka TROVE-2020-001.
Published 2020-07-15 · Modified
7.5EPSS 0.014
CVE-2021-28090
Tor before 0.4.5.7 allows a remote attacker to cause Tor directory authorities to exit with an assertion failure, aka TROVE-2021-002.
Published 2021-03-19 · Modified
5.3EPSS 0.021