Vulnerabilities > Torproject > TOR > 0.4.6.6

DATE CVE VULNERABILITY TITLE RISK
2023-01-14 CVE-2023-23589 The SafeSocks option in Tor before 0.4.7.13 has a logic error in which the unsafe SOCKS4 protocol can be used but not the safe SOCKS4a protocol, aka TROVE-2022-002.
network
low complexity
torproject debian fedoraproject
6.5
2021-08-30 CVE-2021-38385 Reachable Assertion vulnerability in Torproject TOR
Tor before 0.3.5.16, 0.4.5.10, and 0.4.6.7 mishandles the relationship between batch-signature verification and single-signature verification, leading to a remote assertion failure, aka TROVE-2021-007.
network
low complexity
torproject CWE-617
7.5