Commit Graph
15595 Commits
Author SHA1 Message Date
Roger Dingledine 89dc27b989 prep for next rc 2012-10-23 22:12:08 -04:00
Roger Dingledine 44620d3b6b Merge branch 'maint-0.2.3' into release-0.2.3 2012-10-23 22:06:09 -04:00
Nick Mathewson b99457d429 Make unit test for bug7191 work with new smartlist_new() name 2012-10-23 21:49:46 -04:00
Nick Mathewson b0646cc142 Merge remote-tracking branch 'origin/maint-0.2.2' into maint-0.2.3 2012-10-23 21:48:50 -04:00
Andrea Shepard cb693ef56e Add some unit tests for smartlist_bsearch_idx() on short lists
Conflicts:
	src/test/test_containers.c
2012-10-23 21:35:30 -04:00
Nick Mathewson 3365def68b Add a changes file for bug 7191. 2012-10-23 21:35:30 -04:00
Nick Mathewson 8905789170 Fix binary search on lists of 0 or 1 element.
The implementation we added has a tendency to crash with lists of 0 or
one element.  That can happen if we get a consensus vote, v2
consensus, consensus, or geoip file with 0 or 1 element.  There's a
DOS opportunity there that authorities could exploit against one
another, and which an evil v2 authority could exploit against anything
downloading v2 directory information..

This fix is minimalistic: It just adds a special-case for 0- and
1-element lists.  For 0.2.4 (the current alpha series) we'll want a
better patch.

This is bug 7191; it's a fix on 0.2.0.10-alpha.
2012-10-23 21:32:26 -04:00
Roger Dingledine 36801ba3c0 Merge branch 'maint-0.2.3' into release-0.2.3 2012-10-23 17:26:21 -04:00
Roger Dingledine 2ecee3fce2 Let 0.2.3 clients exit to internal addresses if they want
Clients now consider the ClientRejectInternalAddresses config option
when using a microdescriptor consensus stanza to decide whether
an exit relay would allow exiting to an internal address. Fixes
bug 7190; bugfix on 0.2.3.1-alpha.
2012-10-23 17:18:01 -04:00
Nick Mathewson 85659d3964 Fix parse_short_policy (bug 7192.)
Our implementation of parse_short_policy was screwed up: it would
ignore the last character of every short policy.  Obviously, that's
broken.

This patch fixes the busted behavior, and adds a bunch of unit tests
to make sure the rest of that function is okay.

Fixes bug 7192; fix on 0.2.3.1-alpha.
2012-10-23 13:49:48 -04:00
Roger Dingledine 4c8b58f900 add a unit test to expose bug 7192 2012-10-22 17:09:43 -04:00
Roger Dingledine 3a2b86ef5d fold in the 0.2.3.23 changes entries tor-0.2.3.23-rc 2012-10-20 14:09:18 -04:00
Roger Dingledine 922fb087f9 shift the categories around a bit 2012-10-20 13:54:36 -04:00
Roger Dingledine abfaf217fb bump to 0.2.3.23-rc 2012-10-19 14:46:50 -04:00
Roger Dingledine 161ca100a6 fold in recent changes entries 2012-10-19 14:43:21 -04:00
Roger Dingledine 55cae7dbf1 Merge branch 'maint-0.2.3' into release-0.2.3 2012-10-19 14:30:58 -04:00
Nick Mathewson 1cc06bd35e Merge branch 'block_renegotiate_023' into maint-0.2.3 2012-10-19 14:30:31 -04:00
Nick Mathewson b6931b0105 Merge branch 'bug7149' into maint-0.2.3 2012-10-19 03:02:57 -04:00
Robert Ransom d3bfdd6108 Don't serve or accept v2 HS descs over a DirPort
(changes file tweaked by nickm)
2012-10-19 02:56:25 -04:00
Nick Mathewson a0e9dc9f55 Merge remote-tracking branch 'origin/maint-0.2.2' into maint-0.2.3 2012-10-19 00:58:33 -04:00
Nick Mathewson 8743080a28 Disable TLS Session Tickets, which we were apparently getting for free
OpenSSL 1.0.0 added an implementation of TLS session tickets, a
"feature" that let session resumption occur without server-side state
by giving clients an encrypted "ticket" that the client could present
later to get the session going again with the same keys as before.
OpenSSL was giving the keys to decrypt these tickets the lifetime of
the SSL contexts, which would have been terrible for PFS if we had
long-lived SSL contexts.  Fortunately, we don't.  Still, it's pretty
bad.  We should also drop these, since our use of the extension stands
out with our non-use of session cacheing.

Found by nextgens. Bugfix on all versions of Tor when built with
openssl 1.0.0 or later.  Fixes bug 7139.
2012-10-19 00:54:51 -04:00
Nick Mathewson f357ef9dcc Discard extraneous renegotiation attempts in the v3 link protocol
Failure to do so left us open to a remotely triggerable assertion
failure. Fixes CVE-2012-2249; bugfix on 0.2.3.6-alpha. Reported by
"some guy from France".
2012-10-17 19:18:16 -04:00
Roger Dingledine 60d0964c9a slight tweak, and also reformat 2012-10-13 21:06:13 -04:00
Nick Mathewson e26630d091 Expand 0.2.3 dedication paragaph to full version of latest draft
We should still make sure mlp approves it.
2012-10-13 19:39:59 -04:00
Roger Dingledine f33b65393b fold in the changes files so far 2012-10-13 19:25:58 -04:00
Roger Dingledine 09633dd07c correct a point about logging 2012-10-13 19:25:42 -04:00
Roger Dingledine 286cbeac84 start at an 0.2.3 release notes 2012-10-13 18:47:05 -04:00
Roger Dingledine f52fd41842 Merge branch 'maint-0.2.3' into release-0.2.3 2012-10-13 18:35:05 -04:00
Nick Mathewson e2549c3b74 Merge branch 'bug7014_023_squashed' into maint-0.2.3 2012-10-09 23:46:56 -04:00
George Kadianakis 721f99e495 Don't call fmt_addr() twice in a parameter list. 2012-10-09 23:46:04 -04:00
Nick Mathewson 0a3dfd0423 Merge remote-tracking branch 'arma/bug7037' into maint-0.2.3 2012-10-04 12:46:33 -04:00
Roger Dingledine e50fa0d6cb Refuse extra create cells with reason "resource limit"
In the past we had used reason "internal", which is more vague than
it needs to be. Resolves bug 7037.
2012-10-03 20:17:37 -04:00
Roger Dingledine b1971d89c8 properly free the return values of rate_limit_log()
resolves bug 7022.
2012-10-03 13:15:27 -04:00
Roger Dingledine c88a4c51b4 add faravahar as our ninth v3 dir auth 2012-09-22 09:10:37 -04:00
Nick Mathewson b9c86948e4 Clarify that hidden services are TCP only
Also remove some trailing whitespace.

Patch from maker; fixes bug 6024.
2012-09-19 08:19:21 -04:00
Nick Mathewson aca325eb0c Whitespace fixes 2012-09-18 16:16:17 -04:00
Mike Perry 4bfed4378d Bug 6866: Convert pathbias asserts into log messages.
Asserts were hit by Tor2Web mode.
2012-09-17 18:25:28 -07:00
Nick Mathewson b1447a4312 Use file-size-fixup code on cygwin too.
We already had code on windows to fix our file sizes when we're
reading a file in text mode and its size doesn't match the size from
fstat.  But that code was only enabled when _WIN32 was defined, and
Cygwin defines __CYGWIN__ instead.

Fixes bug 6844; bugfix on 0.1.2.7-alpha.
2012-09-14 12:39:18 -04:00
Robert Ransom 909691f1ae Fix man page typo 2012-09-13 23:25:03 -07:00
Nick Mathewson 1e68c213a2 mention the bug number in the 6827 changes file 2012-09-13 10:07:06 -04:00
Robert Ransom 0a6480cdd0 Avoid undefined behaviour when parsing HS protocol versions
Fixes bug 6827; bugfix on c58675ca72
(when the v2 HS desc parser was implemented).

Found by asn.
2012-09-13 07:48:21 -04:00
Nick Mathewson 45439bfced Revert "6819: typo in torrc.sample.in"
This reverts commit 4aff97cfc7.

We don't actually want to be changing the torrc.sample on stable or
near-stable stuff, since doing so makes pointless busywork for debian
users.
2012-09-12 15:37:47 -04:00
Nick Mathewson 1f5a7917f5 Merge remote-tracking branch 'public/bug6341_a_v2' into maint-0.2.3 2012-09-12 11:10:59 -04:00
Nick Mathewson 4aff97cfc7 6819: typo in torrc.sample.in 2012-09-12 11:08:30 -04:00
Roger Dingledine 213ba1a70b bump to 0.2.3.22-rc tor-0.2.3.22-rc 2012-09-11 14:44:10 -04:00
Roger Dingledine e2fd67fc56 move 0.2.2.39 changelog forward 2012-09-11 14:30:11 -04:00
Roger Dingledine de3cd99240 fold in 0.2.3.22-rc changes 2012-09-11 14:26:30 -04:00
Roger Dingledine 57f05c318d Merge branch 'maint-0.2.3' into release-0.2.3 2012-09-11 14:18:14 -04:00
Nick Mathewson 5833861f62 Merge remote-tracking branch 'origin/maint-0.2.2' into maint-0.2.3
Conflicts:
	src/test/test_util.c
2012-09-11 13:20:15 -04:00
Nick Mathewson 84f47ffc46 Merge branch 'timegm_assert_v3_squashed' into maint-0.2.2 2012-09-11 13:14:43 -04:00