Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1336 CNY

100%

CVE-2026-77641

CVSS 6.5 · Medium EPSS 0.19% · P9

Possible ATT&CK Techniques 1AI

T1499 · Endpoint Denial of Service

Affected Version Matrix 1

VendorProductVersion RangeStatus
torprojectTor0.4.8.1-alpha< 0.4.9.9affected
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2026-77641

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: CVE Program / CVE List V5
Vulnerability Description
tor before 0.4.9.9 was prone to a NULL write after free when sending a CONFLUX_SWITCH cell fails. The return value of relay_send_command_from_edge() was ignored, so a send failure (which calls circuit_mark_for_close() and removes the leg via cfx_del_leg()) would go undetected, causing the caller to write to the now-freed current leg and resulting in a crash. This is TROVE-2026-017.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:L/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
未加检查的返回值
Source: CVE Program / CVE List V5

Affected Products

VendorProductAffected VersionsCPESubscribe
torprojectTor 0.4.8.1-alpha ~ 0.4.9.9 -

II. Public POCs for CVE-2026-77641

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2026-77641

登录查看更多情报信息。

Other References for CVE-2026-77641 (1)

Same Patch Batch · torproject · 2026-08-20 · 7 CVEs total

CVE-2026-776388.9 HIGHTor <0.4.9.11中间人竞争条件漏洞
CVE-2026-776427.5 HIGHTor <0.4.9.9共识解析越界写入漏洞
CVE-2026-775847.0 HIGHTor <0.4.9.10 释放后使用漏洞
CVE-2026-775875.9 MEDIUMTor 0.4.9.11前存在释放后使用漏洞
CVE-2026-776395.3 MEDIUMTor <0.4.9.9 压缩炸弹绕过漏洞
CVE-2026-776403.7 LOWTor <0.4.9.9 zlib截断流无限循环漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2026-77641

No comments yet


Leave a comment