Logo
vulnerabilityCVE-2025-4444
Name
CVE-2025-4444
Source
NVD ( link)Debian ( link)
Description
A security flaw has been discovered in Tor up to 0.4.7.16/0.4.8.17. Impacted is an unknown function of the component Onion Service Descriptor Handler. Performing manipulation results in resource consumption. The attack may be initiated remotely. The attack's complexity is rated as high. The exploitability is considered difficult. Upgrading to version 0.4.8.18 and 0.4.9.3-alpha is recommended to address this issue. It is recommended to upgrade the affected component.
Published Date
Updated Date
Workaround
-
Advisories

Analysis#


Affected Component
Analysis
tor
Exploitable

Vulnerability Ratings#


6.3
CVSSv4
3.7
CVSSv31
2.6
CVSSv2
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
buildroot
2025.02.x
0.4.9.11
Exploitable
openwrt
master
0.4.9.11-r1
Exploitable
openwrt
openwrt-25.12
0.4.9.10-r1
Exploitable