Skip to main content

Threats Tagged 'cve-2026-77587'

View all threats tagged with 'cve-2026-77587'. Filter and sort to focus on specific types of threats.

Pro Console Lifetime

Stop chasing alerts. Route them.

Start free, then upgrade once to turn Radar into an automated delivery engine for your security stack.

Custom feeds / Automations: email, Slack, webhooks, SIEM/MISP / API access (baseline limits)

View Plans & Pricing

API access activates after upgrading in Console -> Billing.

Breach by OffSeqOFFSEQFRIENDS — 25% OFF

Check if your credentials are on the dark web

Instant breach scanning across billions of leaked records. Free tier available.

Scan now

Filter Threats

Narrow down the results by type, severity, or affected countries

Search threats by title, CVE ID, or description. Maximum 100 characters.
Active filters (1):Tag: cve-2026-77587

Threats Tagged 'cve-2026-77587'

Click on any threat for detailed analysis and mitigation recommendations

0

This security update for Tor addresses multiple major bugs including race conditions in onion services, use-after-free vulnerabilities, and protocol handling issues. The fixes prevent potential crashes and improve security by correcting how introduction points and exit policies are handled. The update also restores warnings for unsafe SOCKS protocols and improves client entry guard expiration consistency.

Join the discussion

CVE-2026-77584 is a high-severity vulnerability in Tor before version 0.4.9.10 involving incorrect synchronization. The flaw allows a malicious client to send a RELAY_COMMAND_BEGIN before a CONFLUX_LINK on the same circuit, causing an exit stream to become orphaned and leading to a use-after-free condition when the circuit is freed. This can impact the integrity and availability of the Tor process.

Join the discussion

A vulnerability in Tor versions before 0.4.9.9 allows an attacker to bypass the compression bomb detection by concatenating multiple gzip or zlib sub-streams, each below the detection threshold. This flaw can lead to denial of service by causing resource exhaustion. The issue is tracked as CVE-2026-77639 and is classified under CWE-420 (Unprotected Alternate Channel).

Join the discussion

Tor versions before 0.4.9.11 contain a use-after-free vulnerability related to improper update of reference counts in conflux objects. This flaw occurs when a recovery leg revives a conflux set whose last linked leg has already been closed, potentially leading to a crash of the client. The vulnerability has a medium severity rating with a CVSS score of 5.9.

Join the discussion

Showing 1 to 4 of 4 results

Filters:Tag: cve-2026-77587
Page 1 of 1
OffSeq TrainingCredly Certified

Lead Pen Test Professional

Technical5-day eLearningPECB Accredited
View courses