Categories: Cyber Security News

Tor Browser 15.0.1 Released With Fixes for Multiple Security Vulnerabilities

The Tor Project has released Tor Browser 15.0.1, addressing critical security vulnerabilities inherited from Firefox 140.5.0esr.

This maintenance release delivers essential privacy protections for privacy-focused users who rely on anonymized browsing.

What’s New in Version 15.0.1

The update includes a comprehensive rebase onto Firefox 140.5.0esr, incorporating essential security patches from Mozilla’s latest extended support release.

Tor Browser 15.0.1 is now available from the official Tor Browser download page and distribution directory.

Key improvements include updates to the NoScript extension (version 13.4) and fixes addressing several critical bugs affecting core functionality.

The release resolves zoom-level persistence issues in which default zoom settings unexpectedly reset to 100%, a common frustration for users with specific magnification preferences.

Fixed Security Vulnerabilities

The update includes backported security fixes from Firefox ESR 145 and addresses eight documented vulnerabilities identified in the underlying Firefox engine.

These range from high-impact flaws affecting graphics rendering and WebAssembly operations to moderate-severity issues concerning policy bypasses and memory management.

CVE ID Vulnerability Type Impact Component
CVE-2025-13012 Race condition High Graphics
CVE-2025-13016 Incorrect boundary conditions High JavaScript: WebAssembly
CVE-2025-13017 Same-origin policy bypass Moderate DOM: Notifications
CVE-2025-13018 Mitigation bypass Moderate DOM: Security
CVE-2025-13019 Same-origin policy bypass Moderate DOM: Workers
CVE-2025-13013 Mitigation bypass Moderate DOM: Core & HTML
CVE-2025-13020 Use-after-free Moderate WebRTC: Audio/Video
CVE-2025-13014 Use-after-free Moderate Audio/Video

All platforms benefit from the NoScript extension upgrade and bug fixes. Windows, macOS, and Linux users also receive Firefox 140.5.0esr integration with fixes for the issue affecting the visibility of the upgrade message on about:tor pages.

Linux users specifically gain the restoration of Noto CJK fonts, replacement of the less readable Jigmo fonts, and resolution of font rendering problems in the self-upgrade window.

Android users now benefit from fixed handling of the extension update job, which previously failed to execute correctly on mobile devices. GeckoView has been updated to version 140.5.0esr to match desktop builds.

The build system received maintenance updates, including a Go version upgrade to 1.24.10 across Windows, Linux, and Android platforms.

Android-specific improvements optimize the signing and zipalign processes, reducing redundant operations during release builds.

Users can download Tor Browser 15.0.1 directly from the official Tor Project website. Those encountering issues or possessing feature requests are encouraged to submit feedback through the dedicated bug report channel on the Tor Support portal.

The complete changelog documents all modifications, including internal build system improvements, ensuring long-term maintenance stability for the privacy-focused browser.

Find this Story Interesting! Follow us on Google NewsLinkedIn and X to Get More Instant Updates

The post Tor Browser 15.0.1 Released With Fixes for Multiple Security Vulnerabilities appeared first on Cyber Security News.

rssfeeds-admin

Recent Posts

Unstoppable Board Game Review

Unstoppable is the latest entry in the Renegade Game Studios' lineup of Solo Hero Series…

28 minutes ago

TJ Maxx faces potential lawsuit after hidden camera found in women’s changing room

Several individuals and families in the Machesney Park area have retained attorneys for a potential…

29 minutes ago

North Korea-Linked UNC1069 Uses Fake Zoom and Teams Meetings to Hack Crypto Professionals

A North Korean threat group known as UNC1069 has been running a sophisticated campaign that…

34 minutes ago

Driver Killed In Single-Vehicle Crash On I-69 In DeKalb County

DEKALB COUNTY, Ind. (WOWO) — A 30-year-old man from Columbia City was killed Monday morning…

44 minutes ago

Woman’s Body Recovered From Pond In Marion County; Investigation Underway

MARION COUNTY, Ind. (WOWO) — Indiana Conservation Officers are investigating after a woman’s body was…

44 minutes ago

US House Dems at ag hearing excoriate Trump cuts proposed for farm and food aid

U.S. Agriculture Secretary Brooke Rollins, speaking at a Future Farmers of America event Aug. 18,…

49 minutes ago

This website uses cookies.