[tor-bugs] #17931 [Tor Browser]: Tor Browser Hardened Crash

Tor Bug Tracker & Wiki blackhole at torproject.org
Sun Jan 3 09:53:36 UTC 2016


#17931: Tor Browser Hardened Crash
-------------------------------------------------+-------------------------
 Reporter:  pege                                 |          Owner:  tbb-
     Type:  defect                               |  team
 Priority:  Immediate                            |         Status:
Component:  Tor Browser                          |  needs_review
 Severity:  Blocker                              |      Milestone:
 Keywords:  tbb-hardened, tbb-crash,             |        Version:
  TorBrowserTeam201512R                          |     Resolution:
Parent ID:                                       |  Actual Points:
  Sponsor:                                       |         Points:
-------------------------------------------------+-------------------------

Comment (by cypherpunks):

 >The %27s fragment in that URL (which is 's escaped) is interpreted by
 LogMessageToConsole as a printf-like format specifier for a 27-character
 string.

 Format-string vunnerabilities in my TBB? Who the fuck is working for you,
 it is an obvious BACKDOOR!

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/17931#comment:12>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list