[tor-bugs] #18296 [Tor]: Potential integer overflow and memory corruption in smartlist_heapify

Tor Bug Tracker & Wiki blackhole at torproject.org
Wed Feb 10 12:39:54 UTC 2016


#18296: Potential integer overflow and memory corruption in smartlist_heapify
-------------------------+------------------------------------
 Reporter:  cypherpunks  |          Owner:
     Type:  defect       |         Status:  new
 Priority:  Medium       |      Milestone:  Tor: 0.2.8.x-final
Component:  Tor          |        Version:
 Severity:  Normal       |     Resolution:
 Keywords:               |  Actual Points:
Parent ID:               |         Points:
  Sponsor:               |
-------------------------+------------------------------------

Comment (by teor):

 Replying to [comment:3 cypherpunks]:
 > Replying to [comment:2 teor]:
 >
 > > Ticket #17983 is about building with -ftrapv. Please read the
 discussion on that ticket.
 >
 > Good, the ticket description is changed now. It wasn't clear from the
 discussion that the decision to use ftrapv had been made, in particular
 with regards to TBB builds.

 #17983 is for Tor. Please open another ticket against "Tor Browser" if you
 want it to be built with -ftrapv. Tor Browser is larger, so it could be
 more difficult. (Getting tor to run when built under -ftrapv involved some
 work in 2014-2015.)

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/18296#comment:4>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list