Fix an uninitialized-read when parsing v3 introduction requests.

Fortunately, later checks mean that uninitialized data can't get sent
to the network by this bug.  Unfortunately, reading uninitialized heap
*can* (in some cases, with some allocators) cause a crash if you get
unlucky and go off the end of a page.

Found by asn.  Bugfix on 0.2.4.1-alpha.
This commit is contained in:
Nick Mathewson
2013-08-05 11:40:33 -04:00
committed by Roger Dingledine
parent 0a0f93d277
commit d5cfbf96a2
3 changed files with 10 additions and 10 deletions
+8
View File
@@ -0,0 +1,8 @@
o Major bugfixes:
- Fix an uninitialized read that could (in some cases) lead to a remote
crash while parsing INTRODUCE 1 cells. (This is, so far as we know,
unrelated to the recent news.) Fixes bug XXX; bugfix on
0.2.4.1-alpha. Anybody running a hidden service on the experimental
0.2.4.x branch should upgrade.