Back Linuxsecurity Fedora 44 Tor Significant Denial of Service Resolution 2026
Update to latest upstream release release-0-4-8-25-and-0-4-9-8/21559
* Fri May 15 2026 Marcel Hrry - 0.4.9.8-1 - Update to latest upstream release - Fix CVE-2026-44600 (bz#2476455 / bz#2476454) - Fix CVE-2026-44599 (bz#2476453 / bz#2476452) - Fix CVE-2026-44597 (bz#2476451 / bz#2476450) - Fix CVE-2026-44601 (bz#2467732 / bz#2467731) - Fix CVE-2026-44603 (bz#2467720 / bz#2467719) - Fix CVE-2026-44602 (bz#2467718 / nz@2467717)
* Fri May 15 2026 Marcel Hrry - 0.4.9.8-1 - Update to latest upstream release - Fix CVE-2026-44600 (bz#2476455 / bz#2476454) - Fix CVE-2026-44599 (bz#2476453 / bz#2476452) - Fix CVE-2026-44597 (bz#2476451 / bz#2476450) - Fix CVE-2026-44601 (bz#2467732 / bz#2467731) - Fix CVE-2026-44603 (bz#2467720 / bz#2467719) - Fix CVE-2026-44602 (bz#2467718 / nz@2467717)
[ 1 ] Bug #2467295 - tor-0.4.9.8 is available [ 2 ] Bug #2467718 - CVE-2026-44602 tor: Tor: Denial of service via out-of-order CERT cell [fedora-all] [ 3 ] Bug #2467719 - CVE-2026-44603 tor: Tor: Denial of Service via malformed BEGIN cell [fedora-all] [ 4 ] Bug #2467732 - CVE-2026-44601 tor: Tor: Client crash due to double close of a circuit [fedora-all] [ 5 ] Bug #2476451 - CVE-2026-44597 tor: Tor: Denial of Service due to out-of-bounds read [fedora-all] [ 6 ] Bug #2476453 - CVE-2026-44599 tor: Tor: Low integrity impact via directory message manipulation [fedora-all] [ 7 ] Bug #2476455 - CVE-2026-44600 tor: Tor: De...
This update can be installed with the "dnf" update program. Use su -c 'dnf upgrade --advisory FEDORA-2026-5ce7cc46bb' at the command line. For more information, refer to the dnf documentation available at
Get the latest Linux and open source security news straight to your inbox.
The full story
This article is one source in a clustered incident — the cluster page carries the summary, timeline and every other outlet covering it.
