<feed xmlns='http://www.w3.org/2005/Atom'>
<title>monzero-core.git, branch v0.15.0.5</title>
<subtitle>Monzero core node, command-line wallet, consensus code, and release tooling.
</subtitle>
<id>https://code.monzero.org/monzero-core.git/atom?h=v0.15.0.5</id>
<link rel='self' href='https://code.monzero.org/monzero-core.git/atom?h=v0.15.0.5'/>
<link rel='alternate' type='text/html' href='https://code.monzero.org/monzero-core.git/'/>
<updated>2020-03-09T17:34:24Z</updated>
<entry>
<title>Merge pull request #6376</title>
<updated>2020-03-09T17:34:24Z</updated>
<author>
<name>luigi1111</name>
<email>luigi1111w@gmail.com</email>
</author>
<published>2020-03-09T17:34:24Z</published>
<link rel='alternate' type='text/html' href='https://code.monzero.org/monzero-core.git/commit/?id=17ec003c06eb95207c91f0e9186889f83266e461'/>
<id>urn:sha1:17ec003c06eb95207c91f0e9186889f83266e461</id>
<content type='text'>
6177e49 Added logging for dropped local txes with no i2p/tor connections (vtnerd)
</content>
</entry>
<entry>
<title>Merge pull request #6374</title>
<updated>2020-03-09T17:33:35Z</updated>
<author>
<name>luigi1111</name>
<email>luigi1111w@gmail.com</email>
</author>
<published>2020-03-09T17:33:35Z</published>
<link rel='alternate' type='text/html' href='https://code.monzero.org/monzero-core.git/commit/?id=7ca6b550ae8ee54b42cc968f770e04f350fb5e01'/>
<id>urn:sha1:7ca6b550ae8ee54b42cc968f770e04f350fb5e01</id>
<content type='text'>
d2c1cb7 depends: set several missing build tags (moneromooo-monero)
</content>
</entry>
<entry>
<title>Merge pull request #6373</title>
<updated>2020-03-09T17:32:22Z</updated>
<author>
<name>luigi1111</name>
<email>luigi1111w@gmail.com</email>
</author>
<published>2020-03-09T17:32:22Z</published>
<link rel='alternate' type='text/html' href='https://code.monzero.org/monzero-core.git/commit/?id=137a11b39c690ba5ee2d5f0af318ba9cc10fe8ac'/>
<id>urn:sha1:137a11b39c690ba5ee2d5f0af318ba9cc10fe8ac</id>
<content type='text'>
62ab7fd p2p: plug tor to clearnet association vector (moneromooo-monero)
</content>
</entry>
<entry>
<title>Merge pull request #6368</title>
<updated>2020-03-09T17:30:51Z</updated>
<author>
<name>luigi1111</name>
<email>luigi1111w@gmail.com</email>
</author>
<published>2020-03-09T17:30:51Z</published>
<link rel='alternate' type='text/html' href='https://code.monzero.org/monzero-core.git/commit/?id=7416bb7fc13e4572321bad56c3b40cb0f06482ac'/>
<id>urn:sha1:7416bb7fc13e4572321bad56c3b40cb0f06482ac</id>
<content type='text'>
ac1a34c build: prepare v0.15.0.5 update (selsta)
</content>
</entry>
<entry>
<title>Merge pull request #6367</title>
<updated>2020-03-09T17:29:41Z</updated>
<author>
<name>luigi1111</name>
<email>luigi1111w@gmail.com</email>
</author>
<published>2020-03-09T17:29:41Z</published>
<link rel='alternate' type='text/html' href='https://code.monzero.org/monzero-core.git/commit/?id=de0d9be0ec4d73ee21edcfa9d8f9c5e9af9745a3'/>
<id>urn:sha1:de0d9be0ec4d73ee21edcfa9d8f9c5e9af9745a3</id>
<content type='text'>
f427933 depends: update libsodium to 1.0.18 (selsta)
</content>
</entry>
<entry>
<title>Merge pull request #6365</title>
<updated>2020-03-09T17:28:40Z</updated>
<author>
<name>luigi1111</name>
<email>luigi1111w@gmail.com</email>
</author>
<published>2020-03-09T17:28:40Z</published>
<link rel='alternate' type='text/html' href='https://code.monzero.org/monzero-core.git/commit/?id=7352e8f6167a837c44c9c89e76afdff6ba0d82e6'/>
<id>urn:sha1:7352e8f6167a837c44c9c89e76afdff6ba0d82e6</id>
<content type='text'>
d438e6a wallet: fix exceptions getting the hash of a pruned tx (moneromooo-monero)
</content>
</entry>
<entry>
<title>Merge pull request #6362</title>
<updated>2020-03-09T17:27:36Z</updated>
<author>
<name>luigi1111</name>
<email>luigi1111w@gmail.com</email>
</author>
<published>2020-03-09T17:27:36Z</published>
<link rel='alternate' type='text/html' href='https://code.monzero.org/monzero-core.git/commit/?id=a4ec085dd4e081c51dba1f4766aab48c40538d24'/>
<id>urn:sha1:a4ec085dd4e081c51dba1f4766aab48c40538d24</id>
<content type='text'>
535286a Fixed bug in ZMQ JSON-RPC method field (vtnerd)
</content>
</entry>
<entry>
<title>Merge pull request #6360</title>
<updated>2020-03-09T17:26:26Z</updated>
<author>
<name>luigi1111</name>
<email>luigi1111w@gmail.com</email>
</author>
<published>2020-03-09T17:26:26Z</published>
<link rel='alternate' type='text/html' href='https://code.monzero.org/monzero-core.git/commit/?id=26107dc4cd9a55dcd3676781a96fe3d91c549596'/>
<id>urn:sha1:26107dc4cd9a55dcd3676781a96fe3d91c549596</id>
<content type='text'>
533d85d Fixed string_ref usage bug in epee::from_hex::vector (vtnerd)
</content>
</entry>
<entry>
<title>depends: set several missing build tags</title>
<updated>2020-03-07T22:00:13Z</updated>
<author>
<name>moneromooo-monero</name>
<email>moneromooo-monero@users.noreply.github.com</email>
</author>
<published>2019-12-18T12:07:33Z</published>
<link rel='alternate' type='text/html' href='https://code.monzero.org/monzero-core.git/commit/?id=d2c1cb72e3e22698a245a88f5cb420c59dc25dd7'/>
<id>urn:sha1:d2c1cb72e3e22698a245a88f5cb420c59dc25dd7</id>
<content type='text'>
</content>
</entry>
<entry>
<title>p2p: plug tor to clearnet association vector</title>
<updated>2020-03-07T18:14:06Z</updated>
<author>
<name>Aaron Hook</name>
<email>ahook@protonmail.com</email>
</author>
<published>2020-03-07T17:38:22Z</published>
<link rel='alternate' type='text/html' href='https://code.monzero.org/monzero-core.git/commit/?id=62ab7fdf04ba52065f35ba112f125997e0bc8de3'/>
<id>urn:sha1:62ab7fdf04ba52065f35ba112f125997e0bc8de3</id>
<content type='text'>
During the handshake for an incoming connection, the peer id is checked against the local node's peer id only for the specific zone of the incoming peer, in order to avoid linking public addresses to tor addresses:
https://github.com/monero-project/monero/blob/5d7ae2d2791c0244a221872a7ac62627abb81896/src/p2p/net_node.inl#L2343

However, on handshakes for outgoing connections, all zones are checked:
https://github.com/monero-project/monero/blob/5d7ae2d2791c0244a221872a7ac62627abb81896/src/p2p/net_node.inl#L1064

If an attacker wanted to link a specific tor node to a public node, they could potentially connect to as many public nodes as possible, get themselves added to the peer whitelist, maybe stuff some more attacker-owned addresses into the greylist, then disconnect, and for any future incoming connections, respond with the tor node's id in an attempt to link the public/tor addresses.
</content>
</entry>
</feed>
