[tor-bugs] #6774 [Tor Client]: segfault in entry_guards_parse_state()

Tor Bug Tracker & Wiki torproject-admin at torproject.org
Wed Sep 5 17:34:56 UTC 2012


#6774: segfault in entry_guards_parse_state()
------------------------+---------------------------------------------------
 Reporter:  asn         |          Owner:                    
     Type:  defect      |         Status:  needs_review      
 Priority:  minor       |      Milestone:  Tor: 0.2.3.x-final
Component:  Tor Client  |        Version:                    
 Keywords:              |         Parent:                    
   Points:              |   Actualpoints:                    
------------------------+---------------------------------------------------

Comment(by asn):

 Replying to [comment:2 nickm]:
 > Branch "bug6774" in my public repo has the obvious fix.  Is this worth
 putting on 0.2.3?  It isn't a security issue afaict, since an attacker
 with write access to your state file has plenty of other ways to screw
 you.

 Patch looks good to me.

 Doesn't look like a security issue to me either. The extreme case would be
 if there is a specific action that a guard node can take and cause this
 state corruption so that you can't bootstrap tor. I'm sure that I didn't
 edit my state file, so there must be some kind of bug that leaves tor with
 this broken state.

-- 
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/6774#comment:4>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list