Direct Vulnerabilities

Known vulnerabilities in the tor package. This does not include vulnerabilities belonging to this package’s dependencies.

Fix vulnerabilities automatically

Snyk's AI Trust Platform automatically finds the best upgrade path and integrates with your development workflows. Secure your code at zero cost.

Fix for free
VulnerabilityVulnerable Version
  • L
TEMP-0000000-F971FC

<0.4.9.6-0+deb12u1
  • L
TEMP-0000000-F5DC1F

<0.4.9.11-0+deb12u1
  • L
TEMP-0000000-D426B9

<0.4.9.11-0+deb12u1
  • L
TEMP-0000000-D02C9B

<0.4.9.11-0+deb12u1
  • L
TEMP-0000000-BBBF43

<0.1.0.14-1
  • L
TEMP-0000000-B32316

<0.4.9.6-0+deb12u1
  • L
TEMP-0000000-7CC552

<0.4.7.16-1
  • L
TEMP-0000000-4E708C

<0.4.9.11-0+deb12u1
  • L
TEMP-0000000-3F0E00

<0.1.2.16-1
  • L
TEMP-0000000-254611

<0.4.9.11-0+deb12u1
  • L
TEMP-0000000-035231

<0.4.9.11-0+deb12u1
  • L
Out-of-bounds Write

<0.4.9.9-1
  • L
Unchecked Return Value

<0.4.9.9-1
  • L
Improper Validation of Specified Quantity in Input

<0.4.9.9-1
  • L
Unprotected Alternate Channel

<0.4.9.9-1
  • L
Race Condition

<0.4.9.11-0+deb13u1
  • L
Improper Update of Reference Count

<0.4.9.11-0+deb13u1
  • L
Incorrect Synchronization

<0.4.9.11-0+deb13u1
  • C
Off-by-one Error

<0.4.9.8-0+deb12u1
  • H
NULL Pointer Dereference

<0.4.9.8-0+deb12u1
  • H
Improper Enforcement of a Single

<0.4.9.8-0+deb12u1
  • M
Incorrect Behavior Order

<0.4.9.8-0+deb12u1
  • M
Incorrect Resource Transfer Between Spheres

<0.4.9.8-0+deb12u1
  • C
Incorrect Provision of Specified Functionality

<0.4.9.8-0+deb12u1
  • M
CVE-2023-23589

<0.4.7.13-1
  • H
CVE-2022-33903

<0.4.7.8-1
  • H
Reachable Assertion

<0.4.5.10-1
  • H
Out-of-Bounds

<0.4.5.9-1
  • H
Resource Exhaustion

<0.4.5.9-1
  • H
Authentication Bypass

<0.4.5.9-1
  • M
Reachable Assertion

<0.4.5.7-1
  • H
Resource Exhaustion

<0.4.5.7-1
  • H
Out-of-bounds Read

<0.4.3.6-1
  • H
Memory Leak

<0.4.2.7-1
  • H
CVE-2020-10592

<0.4.2.7-1
  • H
CVE-2017-11565

<0.3.1.7-1
  • L
Resource Exhaustion

<0.4.9.6-0+deb12u1
  • M
CVE-2020-8516

*
  • H
Allocation of Resources Without Limits or Throttling

<0.3.5.8-1
  • H
Use After Free

<0.3.2.10-1
  • H
NULL Pointer Dereference

<0.3.2.10-1
  • H
Use After Free

<0.3.1.9-1
  • L
Channel and Path Errors

<0.3.1.9-1
  • H
Out-of-Bounds

<0.3.1.9-1
  • H
NULL Pointer Dereference

<0.3.1.9-1
  • H
CVE-2017-8819

<0.3.1.9-1
  • M
Information Exposure Through Log Files

<0.3.1.7-1
  • H
Reachable Assertion

<0.2.9.11-1
  • H
Out-of-Bounds

<0.2.8.9-1
  • H
Out-of-Bounds

<0.2.9.8-2
  • H
CVE-2015-2928

<0.2.5.12-1
  • H
Improper Input Validation

<0.2.5.11-1
  • H
Improper Handling of Exceptional Conditions

<0.2.5.11-1
  • M
CVE-2014-5117

<0.2.4.23-1
  • M
Cryptographic Issues

<0.2.4.20-1
  • M
Resource Management Errors

<0.2.3.25-1
  • M
Improper Input Validation

<0.2.3.22-rc-1
  • M
CVE-2012-4419

<0.2.3.22-rc-1
  • M
Information Exposure

<0.2.3.20-rc-1
  • M
Out-of-Bounds

<0.2.3.20-rc-1
  • M
Resource Management Errors

<0.2.3.20-rc-1
  • M
CVE-2012-2250

<0.2.3.24-rc-1
  • M
CVE-2012-2249

<0.2.3.23-rc-1
  • M
Information Exposure

<0.2.2.27-beta-1
  • M
Information Exposure

<0.2.2.27-beta-1
  • M
Information Exposure

<0.2.2.34-1
  • M
Information Exposure

<0.2.2.34-1
  • H
Out-of-Bounds

<0.2.2.35-1
  • M
Information Exposure

<0.2.2.34-1
  • M
Access Restriction Bypass

<0.2.2.34-1
  • M
Out-of-Bounds

<0.2.1.30-1
  • M
Numeric Errors

<0.2.1.29-1
  • M
Resource Management Errors

<0.2.1.29-1
  • M
Improper Input Validation

<0.2.1.29-1
  • M
CVE-2011-0490

<0.2.1.29-1
  • M
Out-of-Bounds

<0.2.1.29-1
  • M
Resource Management Errors

<0.2.1.29-1
  • M
Improper Input Validation

<0.2.1.29-1
  • C
Out-of-Bounds

<0.2.1.26-6
  • M
Information Exposure

<0.2.1.22-1
  • M
Information Exposure

<0.2.1.22-1
  • M
CVE-2009-2426

<0.2.0.35-1
  • M
Improper Input Validation

<0.2.0.35-1
  • C
CVE-2009-0939

<0.2.0.34-1
  • M
CVE-2009-0938

<0.2.0.34-1
  • M
CVE-2009-0937

<0.2.0.34-1
  • M
CVE-2009-0936

<0.2.0.34-1
  • M
CVE-2009-0654

*
  • C
Resource Management Errors

<0.2.0.33-1
  • H
Access Restriction Bypass

<0.2.0.32-1
  • H
Access Restriction Bypass

<0.2.0.32-1
  • M
Access Restriction Bypass

<0.1.2.16-1
  • M
CVE-2007-4099

<0.1.2.15-1
  • M
CVE-2007-4098

<0.1.2.15-1
  • M
CVE-2007-4097

<0.1.2.15-1
  • M
CVE-2007-4096

<0.1.2.15-1
  • M
CVE-2007-3165

<0.1.2.14-1
  • M
CVE-2007-1103

*
  • M
CVE-2006-4508

<0.1.1.23-1
  • M
CVE-2006-3419

<0.1.1.20-1
  • M
CVE-2006-3418

<0.1.1.20-1
  • M
CVE-2006-3417

<0.1.1.20-1
  • M
CVE-2006-3416

<0.1.1.20-1
  • M
CVE-2006-3415

<0.1.1.20-1
  • M
CVE-2006-3414

<0.1.1.20-1
  • M
CVE-2006-3413

<0.1.1.20-1
  • M
CVE-2006-3412

<0.1.1.20-1
  • M
CVE-2006-3411

<0.1.1.20-1
  • M
CVE-2006-3410

<0.1.1.20-1
  • H
CVE-2006-3409

<0.1.1.20-1
  • M
CVE-2006-3408

<0.1.1.20-1
  • M
CVE-2006-3407

<0.1.1.20-1
  • M
CVE-2006-0414

<0.1.1.11-alpha-1
  • M
CVE-2005-2643

<0.1.0.14-1
  • M
CVE-2005-2050

<0.0.9.10-1