[tor-bugs] #9063 [Tor]: #6252 didn't go far enough

Tor Bug Tracker & Wiki blackhole at torproject.org
Fri Jun 14 02:51:35 UTC 2013


#9063: #6252 didn't go far enough
--------------------+-------------------------------------------------------
 Reporter:  arma    |          Owner:                    
     Type:  defect  |         Status:  new               
 Priority:  normal  |      Milestone:  Tor: 0.2.3.x-final
Component:  Tor     |        Version:                    
 Keywords:          |         Parent:                    
   Points:          |   Actualpoints:                    
--------------------+-------------------------------------------------------
 In #6252 we noted that a client can send sendme cells preemptively to the
 exit relay, thus cheating on her circuit window (and getting more than her
 fair share of throughput). We fixed it at the exit relay (now it checks if
 the window is higher than it's allowed to be), but we didn't fix it at
 other relays in the circuit -- so she can still send a sendme after the
 cells have been packaged by the exit relay, but before they've made it all
 the way to the client, and do a more subtle version of cheating. This
 one's trickier to execute, but still worth fixing because it opens up all
 the issues that we thought we'd closed in #6252.

 Reported by Rob Jansen and Florian Tschorsch.

-- 
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/9063>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list