Accepted tor (source) into experimental

Date: Fri, 01 Dec 2017 23:30:27 +0100
 tor ( experimental; urgency=medium
   * New upstream version, including among others:
     - Fix a denial of service bug where an attacker could use a
       malformed directory object to cause a Tor instance to pause while
       OpenSSL would try to read a passphrase from the terminal. (Tor
       instances run without a terminal, which is the case for most Tor
       packages, are not impacted.) Fixes bug 24246; bugfix on every
       version of Tor. Also tracked as TROVE-2017-011 and CVE-2017-8821.
       Found by OSS-Fuzz as testcase 6360145429790720.
     - Fix a denial of service issue where an attacker could crash a
       directory authority using a malformed router descriptor. Fixes bug
       24245; bugfix on Also tracked as TROVE-2017-010
       and CVE-2017-8820.
     - When checking for replays in the INTRODUCE1 cell data for a
       (legacy) onion service, correctly detect replays in the RSA-
       encrypted part of the cell. We were previously checking for
       replays on the entire cell, but those can be circumvented due to
       the malleability of Tor's legacy hybrid encryption. This fix helps
       prevent a traffic confirmation attack. Fixes bug 24244; bugfix on This issue is also tracked as TROVE-2017-009
       and CVE-2017-8819.
     - Fix a use-after-free error that could crash v2 Tor onion services
       when they failed to open circuits while expiring introduction
       points. Fixes bug 24313; bugfix on This issue is
       also tracked as TROVE-2017-013 and CVE-2017-8823.
     - When running as a relay, make sure that we never build a path
       through ourselves, even in the case where we have somehow lost the
       version of our descriptor appearing in the consensus. Fixes part
       of bug 21534; bugfix on This issue is also tracked
       as TROVE-2017-012 and CVE-2017-8822.
     - When running as a relay, make sure that we never choose ourselves
       as a guard. Fixes part of bug 21534; bugfix on This
       issue is also tracked as TROVE-2017-012 and CVE-2017-8822.
