[tor-bugs] #13477 [Tor]: Memwipe more keys after tor is finished using them

Tor Bug Tracker & Wiki blackhole at torproject.org
Mon Oct 20 21:45:16 UTC 2014


#13477: Memwipe more keys after tor is finished using them
------------------------+--------------------------------
     Reporter:  teor    |      Owner:
         Type:  defect  |     Status:  closed
     Priority:  normal  |  Milestone:  Tor: 0.2.6.x-final
    Component:  Tor     |    Version:  Tor: unspecified
   Resolution:  fixed   |   Keywords:  tor-router easy
Actual Points:          |  Parent ID:
       Points:          |
------------------------+--------------------------------

Comment (by teor):

 Yes, you're right - I didn't quite work through all the cases.

 If I had, I might have also wiped whatever we read in (if anything) from
 corrupted files in the FN_FILE (file present) error cases. But I think
 that worrying about data that *might* be parts of a key, mixed with at
 least some garbage, is being a little paranoid.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/13477#comment:4>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list