[tor-bugs] #21470 [Core Tor/Tor]: Write unit tests for security regressions

Tor Bug Tracker & Wiki blackhole at torproject.org
Fri Feb 17 23:38:54 UTC 2017


#21470: Write unit tests for security regressions
--------------------------+------------------------------------
 Reporter:  teor          |          Owner:
     Type:  task          |         Status:  new
 Priority:  Medium        |      Milestone:  Tor: 0.3.1.x-final
Component:  Core Tor/Tor  |        Version:
 Severity:  Normal        |     Resolution:
 Keywords:  test          |  Actual Points:
Parent ID:                |         Points:
 Reviewer:                |        Sponsor:
--------------------------+------------------------------------

Comment (by teor):

 For #20894, the test case is:
 https://github.com/teor2345/tor/blob/fuzz-dir-
 sensitive-v2/src/test/fuzz/fuzz_dir_testcase/dir-header-read-beyond-
 buffer.case

 Do you still have the #21018 test case? I think you found it with
 libfuzzer?
 (Or is it already in the corpus?)

 For #21450, I think a unit test might be the easiest option, as we want
 something that differs on i386 and x86_64.
 (Are we fuzzing on i386, or only x86_64?)

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/21470#comment:7>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list