[tor-bugs] #20512 [Core Tor/Tor]: Make a Tor 0.2.7.7 release, with the patch for #20384

Tor Bug Tracker & Wiki blackhole at torproject.org
Mon Dec 19 05:26:29 UTC 2016


#20512: Make a Tor 0.2.7.7 release, with the patch for #20384
--------------------------+------------------------------------
 Reporter:  arma          |          Owner:
     Type:  task          |         Status:  new
 Priority:  Medium        |      Milestone:  Tor: 0.2.7.x-final
Component:  Core Tor/Tor  |        Version:
 Severity:  Normal        |     Resolution:
 Keywords:                |  Actual Points:
Parent ID:                |         Points:
 Reviewer:                |        Sponsor:
--------------------------+------------------------------------

Comment (by arma):

 Here they are, rearranged into categories:

 Directory authority keys (should include in 0.2.7.7):

 >         * #19728, #19690 (replace bridge authority)
 >         * #19271 (remove urras from authority list)
 >         * #17906 (dannenberg new key)

 Crashes and security bulletproofing (should include in 0.2.7.7):

 >         * #16248 (rare assert when using DNSPort)
 >         * #15221 (allow more syscalls without crashing when Sandbox 1 is
 set)
 >         * #18162 (difficult-to-trigger heap corruption attack for
 enormous smartlists)
 >         * #18089 (runtime error calling memwipe(NULL) when built with
 hardened)
 >         * #17675 (avoid sandbox error when using offline ed25519 relay
 identity keys)

 Build issues with weird platforms (we might want to backport these if the
 patches look easy):

 >         * #19213 (build problems on mingw-w64)
 >         * #18490 (unit-test fail to cross-compile for aarch64)
 >         * #14821 (let hardened builds work when built with clang)
 >         * #17923 (configure.ac mistake means we don't find
 in6_addr.s6_addr32)
 >         * #17819 (fix compile on netbsd 6.x)
 >         * #17827 (freebsd compile fix)
 >         * #17818, 01a9575ad0, 670affa7 (support ancient automake
 versions)

 Issues with unit tests (would like to leave these out if possible):

 >         * #18977 (unit test problems on Windows)
 >         * #18841 (obscure unit test failure on gentoo)
 >         * #19008 (test-network-all can stall at ping6)

 Behavior that doesn't seem so bad really for oldoldoldstable (no
 backport):

 >         * #18570 (bug in an unused codepath in cell queueing)
 >         * #18050 (sometimes on startup a relay briefly lists a dirport
 of 0)

 Things that only directory authorities do (so no backport):

 >         * #19032 (directory authority crash, not triggerable until
 0.2.8)
 >         * #17668, #18318, #18368 (directory authorities generate v3 vote
 wrong and then don't vote)
 >         * #17702 (directory authorities look at ed25519 identity keys)

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/20512#comment:2>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list