Skip to content
Noroxi

tor records

57 published records for vendor tor.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
4
With a fix record
93%
Median publish → KEV
No record has entered KEV

Bug bounty scope

The product’s vendor appears in a public program. Matched by name; verify the scope text in the program.

All records

57 records
  • Heap-based buffer overflow in Tor before 0.2.1.28 and 0.2.2.x before 0.2.2.20-alpha allows remote attackers to cause a denial of service (da

    CriticalCVSS 10.0No exploitEPSS 8%

    tor · torDec 21, 2010

  • Unspecified vulnerability in Tor before 0.2.0.33 has unspecified impact and remote attack vectors that trigger heap corruption.

    CriticalCVSS 10.0No exploitEPSS 3%

    tor · torFeb 3, 2009

  • Tor before 0.2.0.34 treats incomplete IPv4 addresses as valid, which has unknown impact and attack vectors related to "Spec conformance," as

    CriticalCVSS 10.0No exploitEPSS 2%

    tor · torMar 17, 2009

  • CVE-2008-5398
    38Monitor

    Tor before 0.2.0.32 does not properly process the ClientDNSRejectInternalAddresses configuration option in situations where an exit relay is

    CriticalCVSS 9.3No exploitEPSS 2%

    tor · torDec 8, 2008

  • CVE-2011-2778
    31Monitor

    Multiple heap-based buffer overflows in Tor before 0.2.2.35 allow remote attackers to cause a denial of service (memory corruption) or possi

    HighCVSS 7.6No exploitEPSS 4%

    tor · torDec 22, 2011

  • CVE-2006-3409
    31Monitor

    Integer overflow in Tor before 0.1.1.20 allows remote attackers to execute arbitrary code via crafted large inputs, which result in a buffer

    HighCVSS 7.5No exploitEPSS 4%

    tor · torJul 6, 2006

  • CVE-2011-0427
    28Monitor

    Heap-based buffer overflow in Tor before 0.2.1.29 and 0.2.2.x before 0.2.2.21-alpha allows remote attackers to cause a denial of service (me

    MediumCVSS 6.8No exploitEPSS 4%

    tor · torJan 19, 2011

  • CVE-2008-5397
    28Monitor

    Tor before 0.2.0.32 does not properly process the (1) User and (2) Group configuration options, which might allow local users to gain privil

    HighCVSS 7.2No exploitEPSS 0%

    tor · torDec 8, 2008

  • CVE-2007-4097
    26Monitor

    Tor before 0.1.2.15 sends "destroy cells" containing the reason for tearing down a circuit, which allows remote attackers to obtain sensitiv

    MediumCVSS 6.4No exploitEPSS 2%

    tor · torJul 30, 2007

  • CVE-2006-3412
    26Monitor

    Tor before 0.1.1.20 does not sufficiently obey certain firewall options, which allows remote attackers to bypass intended access restriction

    MediumCVSS 6.4No exploitEPSS 2%

    tor · torJul 6, 2006

  • CVE-2006-3417
    26Monitor

    Tor client before 0.1.1.20 prefers entry points based on is_fast or is_stable flags, which could allow remote attackers to be preferred over

    MediumCVSS 6.4No exploitEPSS 2%

    tor · torJul 6, 2006

  • CVE-2006-3415
    26Monitor

    Tor before 0.1.1.20 uses improper logic to validate the "OR" destination, which allows remote attackers to perform a man-in-the-middle (MITM

    MediumCVSS 6.4No exploitEPSS 2%

    tor · torJul 6, 2006

  • CVE-2007-4174
    25Monitor

    Tor before 0.1.2.16, when ControlPort is enabled, does not properly restrict commands to localhost port 9051, which allows remote attackers

    MediumCVSS 5.8Proof of conceptEPSS 6%

    tor · torAug 7, 2007

  • CVE-2006-3407
    25Monitor

    Tor before 0.1.1.20 allows remote attackers to spoof log entries or possibly execute shell code via strings with non-printable characters.

    MediumCVSS 6.4No exploitEPSS 2%

    tor · torJul 6, 2006

  • CVE-2006-3411
    25Monitor

    TLS handshakes in Tor before 0.1.1.20 generate public-private keys based on TLS context rather than the connection, which makes it easier fo

    MediumCVSS 6.4No exploitEPSS 1%

    tor · torJul 6, 2006

  • CVE-2007-4096
    24Monitor

    Buffer overflow in Tor before 0.1.2.15, when using BSD natd support, allows remote attackers to cause a denial of service via unspecified ve

    MediumCVSS 5.8No exploitEPSS 2%

    tor · torJul 30, 2007

  • CVE-2007-4099
    24Monitor

    Tor before 0.1.2.15 can select a guard node beyond the first listed never-before-connected-to guard node, which allows remote attackers with

    MediumCVSS 5.8No exploitEPSS 2%

    tor · torJul 30, 2007

  • CVE-2007-4098
    24Monitor

    Tor before 0.1.2.15 does not properly distinguish "streamids from different exits," which might allow remote attackers with control over Tor

    MediumCVSS 5.8No exploitEPSS 2%

    tor · torJul 30, 2007

  • CVE-2011-2768
    23Monitor

    Tor before 0.2.2.34, when configured as a client or bridge, sends a TLS certificate chain as part of an outgoing OR connection, which allows

    MediumCVSS 5.8No exploitEPSS 1%

    tor · torDec 22, 2011

  • CVE-2011-0015
    21Monitor

    Tor before 0.2.1.29 and 0.2.2.x before 0.2.2.21-alpha does not properly check the amount of compression in zlib-compressed data, which allow

    MediumCVSS 5.0No exploitEPSS 3%

    tor · torJan 19, 2011

  • CVE-2006-0414
    21Monitor

    Tor before 0.1.1.20 allows remote attackers to identify hidden services via a malicious Tor server that attempts a large number of accesses

    MediumCVSS 5.0No exploitEPSS 3%

    tor · torJan 25, 2006

  • CVE-2011-1924
    21Monitor

    Buffer overflow in the policy_summarize function in or/policies.c in Tor before 0.2.1.30 allows remote attackers to cause a denial of servic

    MediumCVSS 5.0No exploitEPSS 3%

    tor · torJun 14, 2011

  • CVE-2012-3517
    21Monitor

    Use-after-free vulnerability in dns.c in Tor before 0.2.2.38 might allow remote attackers to cause a denial of service (daemon crash) via ve

    MediumCVSS 5.0No exploitEPSS 3%

    tor · torAug 25, 2012

  • CVE-2012-3518
    21Monitor

    The networkstatus_parse_vote_from_string function in routerparse.c in Tor before 0.2.2.38 does not properly handle an invalid flavor name, w

    MediumCVSS 5.0No exploitEPSS 3%

    tor · torAug 25, 2012

  • CVE-2011-0492
    21Monitor

    Tor before 0.2.1.29 and 0.2.2.x before 0.2.2.21-alpha allows remote attackers to cause a denial of service (assertion failure and daemon exi

    MediumCVSS 5.0No exploitEPSS 3%

    tor · torJan 19, 2011