Opened 4 years ago

Closed 4 years ago

#17722 closed defect (fixed)

Undefined behavior in tor_cert_checksig

Reported by: cypherpunks Owned by:
Priority: Medium Milestone: Tor: 0.2.7.x-final
Component: Core Tor/Tor Version: Tor: 0.2.7.2-alpha
Severity: Normal Keywords: TorCoreTeam201512
Cc: Actual Points:
Parent ID: Points:
Reviewer: Sponsor:

Description

There is undefined behavior in the tor_cert_checksig function when no separate public key is given (such as in the src/test/test_routerkeys.c:140).

Child Tickets

Attachments (2)

0001-Fix-undefined-behavior-caused-by-memory-overlap.patch (1.5 KB) - added by cypherpunks 4 years ago.
0002-Add-changes-file-for-17722.patch (609 bytes) - added by cypherpunks 4 years ago.

Download all attachments as: .zip

Change History (5)

Changed 4 years ago by cypherpunks

comment:1 Changed 4 years ago by cypherpunks

Status: newneeds_review

comment:2 Changed 4 years ago by teor

Keywords: TorCoreTeam201512 added

comment:3 Changed 4 years ago by nickm

Milestone: Tor: 0.2.7.x-final
Resolution: fixed
Status: needs_reviewclosed

Merged to 0.2.7 and forward; thanks!

Note: See TracTickets for help on using tickets.