[tor-bugs] #21509 [Core Tor/Tor]: Fuzz v3 hidden services

Tor Bug Tracker & Wiki blackhole at torproject.org
Tue Oct 31 17:50:50 UTC 2017


#21509: Fuzz v3 hidden services
-----------------------------------+------------------------------------
 Reporter:  teor                   |          Owner:  nickm
     Type:  task                   |         Status:  merge_ready
 Priority:  Very High              |      Milestone:  Tor: 0.3.2.x-final
Component:  Core Tor/Tor           |        Version:
 Severity:  Normal                 |     Resolution:
 Keywords:  fuzz, prop224, tor-hs  |  Actual Points:
Parent ID:                         |         Points:  2
 Reviewer:                         |        Sponsor:  SponsorR-can
-----------------------------------+------------------------------------
Changes (by dgoulet):

 * status:  needs_review => merge_ready


Comment:

 Great addition!

 This will allow us to test the `decode_superencrypted()` function but most
 of it is `tokenize_string()`. So a good next step would be to explicitly
 fuzz `decode_intro_points()` which happens if the super encrypted section
 is properly decrypted and decoded. See `desc_decode_encrypted_v3()`

 Thanks!

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/21509#comment:16>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list