Vulnerability Description
tor before 0.4.9.9 was prone to an out-of-bounds write when parsing a consensus or detached signature with unexpected signature digest type. Impact is minor for most Tor roles, but potentially major for directory authorities. This is TROVE-2026-019.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
FAQ
What is CVE-2026-77642?
CVE-2026-77642 is a vulnerability with a CVSS score of 7.5 (HIGH). tor before 0.4.9.9 was prone to an out-of-bounds write when parsing a consensus or detached signature with unexpected signature digest type. Impact is minor for most Tor roles, but potentially major...
How severe is CVE-2026-77642?
CVE-2026-77642 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-77642?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.