Tor Browser 9.0.7 on Windows 10 build 10586 is vulnerable...
Moderate severity
Unreviewed
Published
Feb 27, 2022
to the GitHub Advisory Database
•
Updated Feb 3, 2023
Description
Published by the National Vulnerability Database
Feb 26, 2022
Published to the GitHub Advisory Database
Feb 27, 2022
Last updated
Feb 3, 2023
Tor Browser 9.0.7 on Windows 10 build 10586 is vulnerable to information disclosure. This could allow local attackers to bypass the intended anonymity feature and obtain information regarding the onion services visited by a local user. This can be accomplished by analyzing RAM memory even several hours after the local user used the product. This occurs because the product doesn't properly free memory.
References