3.7
/ 10
LOW
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L
Description
Tor before 0.4.9.7 has a NULL pointer dereference when a CERT cell is received out of order, aka TROVE-2026-006.
Basic Information
ID
CVE-2026-44602
Source
mitre
Published
May 7, 2026 at 03:17
Modified
May 7, 2026 at 03:25
Affected Product
Vendor
torproject
Product
Tor
Affected Versions
torproject Tor 0