Commit b33f69ab authored by David Goulet's avatar David Goulet 🤘
Browse files

Merge branch 'maint-0.4.5' into maint-0.4.6

parents b4890e75 9ac479ce
o Minor bugfixes (performance, DoS):
- Fix one case of a not-especially viable denial-of-service attack found
by OSS-Fuzz in our consensus-diff parsing code. This attack causes a
lot small of memory allocations and then immediately frees them: this
is only slow when running with all the sanitizers enabled. Fixes one
case of bug 40472; bugfix on
......@@ -1128,7 +1128,7 @@ consdiff_get_digests(const smartlist_t *diff,
const cdline_t *line2 = smartlist_get(diff, 1);
char *h = tor_memdup_nulterm(line2->s, line2->len);
smartlist_split_string(hash_words, h, " ", 0, 0);
smartlist_split_string(hash_words, h, " ", 0, 4);
