openSUSE Tor Security Updates Address Multiple Vulnerabilities

openSUSE Tor Security Updates Address Multiple Vulnerabilities

First seen 13 May 2026, 17:31 UTC Linuxsecurity 96% similarity 72.5

Article Content

Browse articles
ThreatCluster

openSUSE has released critical updates for the Tor software, addressing several vulnerabilities identified as CVE-2026-44597, CVE-2026-44599, CVE-2026-44600, CVE-2026-44601, CVE-2026-44602, and CVE-2026-44603. These vulnerabilities include issues such as out-of-bounds reads, null pointer dereferences, and circuit management flaws that could lead to client crashes or data exposure. The updates affect both openSUSE Backports SLE-15-SP7 and openSUSE Leap 16.0. The patches were released on May 10 and May 13, 2026, with the vulnerabilities being published on May 7, 2026. Users are advised to apply the updates promptly to mitigate potential exploitation risks. The updates introduce a new circuit-level encryption design aimed at enhancing client security.

Key Points: • openSUSE released critical updates for Tor addressing multiple CVEs. • Vulnerabilities include out-of-bounds reads and null pointer dereferences. • Users are urged to apply patches immediately to prevent exploitation.

ThreatCluster AI

Timeline

2026-05-07
CVE-2026 vulnerabilities published
Multiple vulnerabilities in Tor were published, including CVE-2026-44597 to CVE-2026-44603, affecting client stability and security.
Linuxsecurity
2026-05-07
CVE-2026-44603 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-07
CVE-2026-44599 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-07
CVE-2026-44600 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-07
CVE-2026-44601 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-07
CVE-2026-44602 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-07
CVE-2026-44597 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-05-10
openSUSE Leap 16.0 Tor update released
An update for Tor was released for openSUSE Leap 16.0, addressing critical vulnerabilities and improving security features.
Linuxsecurity
2026-05-13
openSUSE Backports SLE-15-SP7 Tor update released
A security update for Tor was released for openSUSE Backports SLE-15-SP7, fixing several critical vulnerabilities.
Linuxsecurity

Community

Browse all →