mirror of
https://gitlab.torproject.org/tpo/core/tor.git
synced 2024-11-30 15:43:32 +01:00
971e83ef9c
This patch imposes (very long) limits on the length of a line in a directory document, and on the length of a certificate. I don't think it should actually be possible to overrun these remotely, since we already impose a maximum size on any directory object we're downloading, but a little defensive programming never hurt anybody. Roger emailed me that doorss reported these on IRC, but nobody seems to have put them on the bugtracker.
5 lines
200 B
Plaintext
5 lines
200 B
Plaintext
o Minor bugfixes
|
|
- Check for and reject overly long directory certificates and
|
|
directory tokens before they have a chance to hit any
|
|
assertions. Bugfix on 0.2.1.28. Found by doorss.
|