[tor-bugs] #17674 [Tor]: circuit_handle_first_hop doesn't respect ExtendAllowPrivateAddresses
Tor Bug Tracker & Wiki
blackhole at torproject.org
Mon Dec 7 23:04:33 UTC 2015
#17674: circuit_handle_first_hop doesn't respect ExtendAllowPrivateAddresses
-------------------------------------------------+-------------------------
Reporter: teor | Owner:
Type: defect | Status:
Priority: Very High | needs_information
Component: Tor | Milestone: Tor:
Severity: Major | 0.2.8.x-final
Keywords: dos tor-hs 027-backport | Version:
026-backport security | Resolution:
Parent ID: #17178 | Actual Points:
Sponsor: | Points:
-------------------------------------------------+-------------------------
Comment (by teor):
Replying to [comment:7 teor]:
> This is the behaviour the patch is intended to prevent - we don't want
clients being able to convince HSs to make a TLS connection to anywhere on
the Internet via their rendezvous second middle relay.
Oops, I meant: "a TLS connection to the relay's private network".
--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/17674#comment:8>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online
More information about the tor-bugs
mailing list