ticket33119 517 B

12345678
  1. o Major bugfixes (security, denial-of-service):
  2. - Fix a denial-of-service bug that could be used by anyone to consume a
  3. bunch of CPU on any Tor relay or authority, or by directories to
  4. consume a bunch of CPU on clients or hidden services. Because
  5. of the potential for CPU consumption to introduce observable
  6. timing patterns, we are treating this as a high-severity security
  7. issue. Fixes bug 33119; bugfix on 0.2.1.5-alpha. We are also tracking
  8. this issue as TROVE-2020-002.