Known vulnerabilities in tor (Debian package)

Vendor: Debian
Software CPE: cpe:2.3:o:debian:tor_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 9
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting tor (Debian package) tor (Debian package) is affected by 9 known vulnerabilities: 1 high, 6 medium, 2 low Critical High Medium Low

Vulnerabilities (9)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU71194 - Exposure of sensitive information to an unauthorized actor
CVE-2023-23589
CWE-200 Medium
No
No
0.4.5.16-1 17.01.2023 SB2023011703
SB2023011715
SB2023050442
and 5 more
#VU61625 - Heap-based Buffer Overflow
CVE-2022-1052
CWE-122 High
No
No
0.4.7.16-1 25.03.2022 SB2022032509
SB2024041624
#VU56095 - Reachable Assertion
CVE-2021-38385
CWE-617 Medium
No
No
0.3.5.16-1, 0.4.5.10-1~deb11u1 25.08.2021 SB2021082520
SB2021082522
SB2023050442
and 4 more
#VU54231 - Out-of-bounds read
CVE-2021-34550
CWE-125 Low
No
No
0.3.5.15-1 20.06.2021 SB2021062001
SB2021062104
SB2021062208
and 6 more
#VU54230 - Resource Management Errors
CVE-2021-34549
CWE-399 Low
No
No
0.3.5.15-1 20.06.2021 SB2021062001
SB2021062104
SB2021062208
and 6 more
#VU54229 - Exposure of sensitive information to an unauthorized actor
CVE-2021-34548
CWE-200 Medium
No
No
0.3.5.15-1 20.06.2021 SB2021062001
SB2021062104
SB2021062208
and 6 more
#VU51542 - Reachable Assertion
CVE-2021-28090
CWE-617 Medium
No
No
0.3.5.14-1 17.03.2021 SB2021031714
SB2021031805
SB2021071002
and 2 more
#VU51541 - Resource exhaustion
CVE-2021-28089
CWE-400 Medium
No
No
0.3.5.14-1 17.03.2021 SB2021031714
SB2021031805
SB2021071002
and 2 more
#VU26505 - Resource exhaustion
CVE-2020-10592
CWE-400 Medium
No
No
0.3.5.10-1~bpo9+1 01.04.2020 SB2020040131
SB2020040132
SB2020040133
and 4 more