public inbox for git@vger.kernel.org 
 help / color / mirror / Atom feed
From: "René Scharfe" <l.s.r@web•de>
To: Jeff King <peff@peff•net>
Cc: Git List <git@vger•kernel.org>
Subject: Re: [PATCH] describe: use khash in finish_depth_computation()
Date: Mon, 1 Sep 2025 21:06:19 +0200	[thread overview]
Message-ID: <84fb48b3-17ae-405c-b7a9-6d48a3c57a36@web.de> (raw)
In-Reply-To: <cb192b28-d85a-4866-a312-df4408cae93e@web.de>

On 8/31/25 7:25 PM, René Scharfe wrote:
> Sure.  I'm not comfortable with oidhash() though, because it allows
> attackers to influence the hash value, cause collisions and thus
> increase the cost of lookups and inserts to O(N), leading to quadratic
> complexity overall.
> 
> They "just" need to construct commits with a common hash prefix.  I
> guess that's easy for two bytes and hard for four bytes.  Not sure how
> what an attacker would get out of planting such performance traps, but
> I guess some people would do it just for the heck of it.

There's https://github.com/not-an-aardvark/lucky-commit, which claims to
take a quarter of a second on a four year old laptop to give a commit a
chosen 28-bit hash prefix by adjusting whitespace in its message.
Constructing a history with a common 32-bit prefix that would
effectively turn any oidhash()-based hash table into an unordered list
seems within easy reach.

René


  reply	other threads:[~2025-09-01 19:06 UTC|newest]

Thread overview: 21+ messages / expand[flat|nested]  mbox.gz  Atom feed  top
2025-08-24  8:37 [PATCH] describe: use khash in finish_depth_computation() René Scharfe
2025-08-24 10:31 ` Jeff King
2025-08-24 16:32   ` René Scharfe
2025-08-25  7:34     ` Jeff King
2025-08-25  8:13       ` Jeff King
2025-08-25 18:48         ` Junio C Hamano
2025-08-26  3:39           ` Jeff King
2025-08-26  4:26             ` Jeff King
2025-08-26  5:52               ` Jeff King
2025-08-26 15:34               ` Junio C Hamano
2025-08-31 17:25       ` René Scharfe
2025-09-01 19:06         ` René Scharfe [this message]
2025-09-02 12:38         ` Jeff King
2025-09-02 18:51           ` René Scharfe
2025-09-03 14:31             ` Jeff King
2025-09-03 15:41               ` René Scharfe
2025-09-04 11:16                 ` Jeff King
2025-09-03 16:30       ` René Scharfe
2025-09-04 11:22         ` Jeff King
2025-09-02 18:24 ` [PATCH v2] describe: use oidset " René Scharfe
2025-09-03 14:36   ` Jeff King

Reply instructions:

You may reply publicly to this message via plain-text email
using any one of the following methods:

* Save the following mbox file, import it into your mail client,
  and reply-to-all from there: mbox

  Avoid top-posting and favor interleaved quoting:
  https://en.wikipedia.org/wiki/Posting_style#Interleaved_style

* Reply using the --to, --cc, and --in-reply-to
  switches of git-send-email(1):

  git send-email \
    --in-reply-to=84fb48b3-17ae-405c-b7a9-6d48a3c57a36@web.de \
    --to=l.s.r@web$(echo .)de \
    --cc=git@vger$(echo .)kernel.org \
    --cc=peff@peff$(echo .)net \
    /path/to/YOUR_REPLY

  https://kernel.org/pub/software/scm/git/docs/git-send-email.html
Be sure your reply has a Subject: header at the top and a blank line before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox