[tor-bugs] #21470 [Core Tor/Tor]: Write unit tests for security regressions

Tor Bug Tracker & Wiki blackhole at torproject.org
Wed Feb 15 13:07:30 UTC 2017


#21470: Write unit tests for security regressions
------------------------------+--------------------------------
     Reporter:  teor          |      Owner:
         Type:  task          |     Status:  new
     Priority:  Medium        |  Milestone:  Tor: 0.3.1.x-final
    Component:  Core Tor/Tor  |    Version:
     Severity:  Normal        |   Keywords:  test
Actual Points:                |  Parent ID:
       Points:                |   Reviewer:
      Sponsor:                |
------------------------------+--------------------------------
 When we fix a security vulnerability like the ones in [
 https://trac.torproject.org/projects/tor/wiki/TROVE TROVE], we sometimes
 forget to include a unit test.

 Some security vulnerabilities are easy to test, such as parsing errors. We
 should write tests that fail with the bug, but succeed when it is fixed.

 Here's an initial list of security fixes we can write unit tests for:
 * #20894
 * #21018
 * #21278 (and #21450)

 Let's open a child ticket of this ticket for each one.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/21470>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list