tor-controlport-filter security review

Information

ID: 604
PHID: PHID-TASK-5u6dme3ixzygq4tquv3e
Author: Patrick
Status at Migration Time: resolved
Priority at Migration Time: Normal

Description

TODO: Check as far as some connection coming from the workstation talking to cpfpy can do something really bad such as getting a shell on the gateway.

Malicious yml files are not part of the threat model. They are trusted. Because someone with the capability to place malicious yml files already has better options to compromise the system.

Comments


joysn1980

2017-01-17 05:47:04 UTC


Patrick

2017-01-17 12:00:23 UTC


joysn1980

2017-01-18 13:29:12 UTC