Fix crash in LZMA module when the Sandbox is enabled.

This patch fixes a crash in our LZMA module where liblzma will allocate
slightly more data than it is allowed to by its limit, which leads to a
crash.

See: https://bugs.torproject.org/22751
This commit is contained in:
Alexander Færøy
2017-06-28 09:57:58 -04:00
parent 2cd49d9ea6
commit c239b2fc9c
2 changed files with 13 additions and 2 deletions
+8 -2
View File
@@ -19,8 +19,14 @@
#define _LARGEFILE64_SOURCE
#endif
/** Malloc mprotect limit in bytes. */
#define MALLOC_MP_LIM (16*1024*1024)
/** Malloc mprotect limit in bytes.
*
* 28/06/2017: This value was increased from 16 MB to 20 MB after we introduced
* LZMA support in Tor (0.3.1.1-alpha). We limit our LZMA coder to 16 MB, but
* liblzma have a small overhead that we need to compensate for to avoid being
* killed by the sandbox.
*/
#define MALLOC_MP_LIM (20*1024*1024)
#include <stdio.h>
#include <string.h>