[tor-bugs] #17244 [Tor Browser]: Low entropy PRNG usage in Tor Browser?

Tor Bug Tracker & Wiki blackhole at torproject.org
Mon Oct 5 20:02:52 UTC 2015


#17244: Low entropy PRNG usage in Tor Browser?
-------------------------------------------------+-------------------------
 Reporter:  arthuredelstein                      |          Owner:  tbb-
     Type:  defect                               |  team
 Priority:  normal                               |         Status:  new
Component:  Tor Browser                          |      Milestone:
 Keywords:  tbb-linkability,                     |        Version:
  TorBrowserTeam201510                           |  Actual Points:
Parent ID:                                       |         Points:
  Sponsor:                                       |
-------------------------------------------------+-------------------------
 We should look for places where Tor Browser may leak the state of a low-
 entropy PRNG, thus linking a user across sites. `Math.random()` is a
 possibility. (I haven't investigated yet.)

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/17244>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list