[tor-bugs] #23655 [Internal Services/Service - trac]: SQL error in parameter REPORT

Tor Bug Tracker & Wiki blackhole at torproject.org
Tue Sep 26 09:30:25 UTC 2017


#23655: SQL error in parameter REPORT
--------------------------------------------------+-----------------
     Reporter:  gk                                |      Owner:  qbi
         Type:  defect                            |     Status:  new
     Priority:  Medium                            |  Milestone:
    Component:  Internal Services/Service - trac  |    Version:
     Severity:  Normal                            |   Keywords:
Actual Points:                                    |  Parent ID:
       Points:                                    |   Reviewer:
      Sponsor:                                    |
--------------------------------------------------+-----------------
 Doing something like
 https://trac.torproject.org/projects/tor/query?status=closed&report=x
 results in a

 `DataError: invalid input syntax for integer: "x" LINE 2: ... SELECT
 title, description FROM report WHERE id='x' ^ `

 Trac error. We got a similar report for that on our HackerOne platform by
 weedatae.

 Upon digging a bit this seems to be https://trac.edgewall.org/ticket/11613
 which should be fixed by https://trac.edgewall.org/changeset/12787. Now,
 our Trac says it is version 1.2 but the fix made it in to 1.1.2dev. I am
 wondering if that's a new issue or 1.2 did not pick it up.

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/23655>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list