Ho lokolloa ha lekala le lecha le tsitsitseng la Tor 0.4.1

Tsebisoa ho lokolloa ha lisebelisoa Tlokotsi 0.4.1.5, e sebelisetsoang ho hlophisa ts'ebetso ea marang-rang a Tor a sa tsejoeng. Tor 0.4.1.5 e nkoa e le tokollo ea pele e tsitsitseng ea lekala la 0.4.1, le ntseng le tsoela pele ka likhoeli tse 'nè tse fetileng. Lekala la 0.4.1 le tla bolokoa e le karolo ea potoloho ea kamehla ea tlhokomelo - lintlafatso li tla emisoa kamora likhoeli tse 9 kapa likhoeli tse 3 kamora ho lokolloa ha lekala la 0.4.2.x. Tšehetso ea nako e telele (LTS) e fanoe bakeng sa lekala la 0.3.5, lintlafatso tse tla lokolloa ho fihlela la 1 Hlakola 2022.

Litlhahiso tse ka sehloohong:

  • Tšehetso ea liteko bakeng sa padding ea boemo ba ketane e kentsoe ts'ebetsong ho matlafatsa ts'ireletso khahlanong le mekhoa ea ho lemoha sephethephethe sa Tor. Moreki joale o eketsa lisele tsa padding qalong ea liketane TSEBA LE REENDEZVOUS, ho etsa hore sephethephethe sa liketane tsena se tšoane le sephethephethe se tloaelehileng se tsoang. Litsenyehelo tsa ts'ireletso e eketsehileng ke ho eketsoa ha lisele tse peli tse eketsehileng ka lehlakoreng le leng le le leng bakeng sa liketane tsa RENDEZVOUS, hammoho le lisele tse le 'ngoe tse ka holimo le tse 10 tse tlaase bakeng sa liketane tsa INTRODUCE. Mokhoa o kengoa ts'ebetsong ha khetho ea MiddleNodes e hlalositsoe litlhophisong 'me e ka holofatsoa ka khetho ea CircuitPadding;

    Ho lokolloa ha lekala le lecha le tsitsitseng la Tor 0.4.1

  • E kentsoe tšehetso bakeng sa lisele tse netefalitsoeng tsa SENDME ho sireletsa khahlanong le Litlhaselo tsa DoS, ho itšetlehile ka ho thehoa ha mojaro oa likokoana-hloko tabeng eo mofani a kōpang ho kopitsoa ha lifaele tse kholo le ho emisa ho bala mesebetsi ka mor'a ho romela likōpo, empa a tsoela pele ho romela litaelo tsa taolo tsa SENDME tse laelang li-node tsa ho kenya hore li tsoele pele ho fetisetsa data. Sele ka 'ngoe
    Hona joale SENDME e kenyelletsa hash ea sephethephethe seo e se amohelang, 'me sebaka sa ho qetela ha se fumana SENDME se ka netefatsa hore motho e mong o se a fumane sephethephethe se rometsoeng ha se sebetsa liseleng tse fetileng;

  • Sebopeho se kenyeletsa ts'ebetsong ea tsamaiso e tloaelehileng ea tsamaiso bakeng sa ho fetisa melaetsa ka mokhoa oa mohoeletsi-mongolisi, o ka sebelisoang ho hlophisa tšebelisano ea intra-module;
  • Ho arola litaelo tsa taolo, ho sebelisoa subsystem e akaretsang ea parsing ho fapana le ho arola ka thoko data e kentsoeng ea taelo ka 'ngoe;
  • Ntlafatso ea ts'ebetso e entsoe ho fokotsa mojaro ho CPU. Hona joale Tor e sebelisa jenereithara e arohaneng ea pseudo-random number generator (PRNG) bakeng sa khoele e 'ngoe le e 'ngoe, e itšetlehileng ka tšebeliso ea mokhoa oa ho kenyelletsa AES-CTR le tšebeliso ea li-buffering constructs like libottery le arc4random () e ncha ea khoutu e tsoang ho OpenBSD. Bakeng sa lintlha tse nyane tse hlahisoang, jenereithara e reriloeng e batla e potlakile ka makhetlo a 1.1.1 ho feta CSPRNG e tsoang ho OpenSSL 100. Le hoja PRNG e ncha e nkoa e le matla a cryptographically ke bahlahisi ba Tor, hajoale e sebelisoa feela libakeng tse hlokang ts'ebetso e phahameng, joalo ka khoutu ea kemiso ea padding attachment;
  • Khetho e ekelitsoeng "--list-modules" ho bonts'a lenane la li-module tse lumelletsoeng;
  • Bakeng sa phetolelo ea boraro ea protocol ea litšebeletso tse patiloeng, taelo ea HSFETCH e kentsoe ts'ebetsong, eo pele e neng e tšehetsoa feela ka phetolelo ea bobeli;
  • Liphoso li lokisitsoe khoutu ea ho qala Tor (bootstrap) le ho netefatsa ts'ebetso ea mofuta oa boraro oa protocol ea litšebeletso tse patiloeng.

Source: opennet.ru

Eketsa ka tlhaloso