Tor
cpe:2.3:a:torproject:tor:*:*:*:*:*:*:*
- < 0.4.9.7
A NULL pointer dereference vulnerability has been identified in Tor versions prior to 0.4.9.7. The issue arises when a CERT cell is received out of order, leading to a crash. This vulnerability was found by a user named Fwame.
Exploitation of this vulnerability causes a crash due to a NULL pointer dereference, disrupting the application's operation.
Users are advised to upgrade to Tor version 0.4.9.7, which addresses this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.