[tor-bugs] #33131 [Core Tor/Tor]: Bug: buf->datalen >= 0x7fffffff

Tor Bug Tracker & Wiki blackhole at torproject.org
Tue Mar 24 06:15:52 UTC 2020


#33131: Bug: buf->datalen >= 0x7fffffff
--------------------------+------------------------------------
 Reporter:  cypherpunks   |          Owner:  (none)
     Type:  defect        |         Status:  needs_review
 Priority:  Medium        |      Milestone:  Tor: 0.4.4.x-final
Component:  Core Tor/Tor  |        Version:  Tor: 0.4.2.5
 Severity:  Minor         |     Resolution:
 Keywords:                |  Actual Points:
Parent ID:                |         Points:
 Reviewer:  nickm         |        Sponsor:
--------------------------+------------------------------------

Comment (by cypherpunks):

 Replying to [comment:12 nickm]:
 > Any chance of getting a unit test for the new code here?

 I have no idea how to begin to create a unit test that replicates the
 conditions of this bug when calling `connection_handle_read()`, there
 aren't any pre existing unit tests of that function to learn from example.

 For better merging to 0.3.5:

 https://gitgud.io/onionk/tor/compare/master...inbufoverflow1-035

 For 0.4.3:

 https://gitgud.io/onionk/tor/compare/master...inbufoverflow1-043

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/33131#comment:13>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list