[tor-bugs] #21509 [Core Tor/Tor]: Fuzz v3 hidden services

Tor Bug Tracker & Wiki blackhole at torproject.org
Thu Oct 26 13:56:14 UTC 2017


#21509: Fuzz v3 hidden services
-----------------------------------+------------------------------------
 Reporter:  teor                   |          Owner:  dgoulet
     Type:  task                   |         Status:  needs_review
 Priority:  Very High              |      Milestone:  Tor: 0.3.2.x-final
Component:  Core Tor/Tor           |        Version:
 Severity:  Normal                 |     Resolution:
 Keywords:  fuzz, prop224, tor-hs  |  Actual Points:
Parent ID:                         |         Points:  2
 Reviewer:                         |        Sponsor:  SponsorR-can
-----------------------------------+------------------------------------
Changes (by dgoulet):

 * status:  accepted => needs_review


Comment:

 See branch: `bug21509_032_01`

 The branch reverts `5ef656e7` which disabled the fuzzing for v3
 descriptor. Then, I've added a dummy subcredential that is mandatory for
 the decoding API.

 This makes the decryption fail all the time of the encrypted layer but
 that is fine because this very basic fuzzing program only fuzz the
 plaintext part for now.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/21509#comment:11>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list