You can not select more than 25 topics Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.

129 lines
9.7 KiB

rpc/jsonrpc: Unmarshal RPCRequest correctly (#6191) i.e. without double pointer. With double pointer, it was possible to submit `null` value, which will crash the server. ``` panic: runtime error: invalid memory address or nil pointer dereference [signal SIGSEGV: segmentation violation code=0x1 addr=0x0 pc=0x189ddc0] goroutine 1 [running]: github.com/tendermint/tendermint/rpc/jsonrpc/types.(*RPCRequest).UnmarshalJSON(0xc0000147e0, 0xc00029f201, 0x4, 0x1ff, 0x883baa0, 0xc0000147e0) /Users/anton/go/src/github.com/tendermint/tendermint/rpc/jsonrpc/types/types.go:70 +0x100 encoding/json.(*decodeState).literalStore(0xc000216bb0, 0xc00029f201, 0x4, 0x1ff, 0x1998800, 0xc0000147e0, 0x199, 0xc000231700, 0x10e0a5e, 0x197) /usr/local/Cellar/go/1.16/libexec/src/encoding/json/decode.go:860 +0x30ce encoding/json.(*decodeState).value(0xc000216bb0, 0x1998800, 0xc0000147e0, 0x199, 0x1998800, 0xc0000147e0) /usr/local/Cellar/go/1.16/libexec/src/encoding/json/decode.go:384 +0x40c encoding/json.(*decodeState).array(0xc000216bb0, 0x18df040, 0xc0001be540, 0x16, 0xc000216bd8, 0x10e405b) /usr/local/Cellar/go/1.16/libexec/src/encoding/json/decode.go:558 +0x365 encoding/json.(*decodeState).value(0xc000216bb0, 0x18df040, 0xc0001be540, 0x16, 0x16, 0x6e) /usr/local/Cellar/go/1.16/libexec/src/encoding/json/decode.go:360 +0x22f encoding/json.(*decodeState).unmarshal(0xc000216bb0, 0x18df040, 0xc0001be540, 0xc000216bd8, 0x0) /usr/local/Cellar/go/1.16/libexec/src/encoding/json/decode.go:180 +0x2c9 encoding/json.Unmarshal(0xc00029f200, 0x6, 0x200, 0x18df040, 0xc0001be540, 0x0, 0x0) /usr/local/Cellar/go/1.16/libexec/src/encoding/json/decode.go:107 +0x15d ```
4 years ago
  1. # Unreleased Changes
  2. ## vX.X
  3. Special thanks to external contributors on this release:
  4. Friendly reminder: We have a [bug bounty program](https://hackerone.com/tendermint).
  5. ### BREAKING CHANGES
  6. - CLI/RPC/Config
  7. - [config] \#5598 The `test_fuzz` and `test_fuzz_config` P2P settings have been removed. (@erikgrinaker)
  8. - [config] \#5728 `fast_sync = "v1"` is no longer supported (@melekes)
  9. - [cli] \#5772 `gen_node_key` prints JSON-encoded `NodeKey` rather than ID and does not save it to `node_key.json` (@melekes)
  10. - [cli] \#5777 use hyphen-case instead of snake_case for all cli commands and config parameters (@cmwaters)
  11. - [rpc] \#6019 standardise RPC errors and return the correct status code (@bipulprasad & @cmwaters)
  12. - [rpc] \#6168 Change default sorting to desc for `/tx_search` results (@melekes)
  13. - [cli] \#6282 User must specify the node mode when using `tendermint init` (@cmwaters)
  14. - [state/indexer] \#6382 reconstruct indexer, move txindex into the indexer package (@JayT106)
  15. - [cli] \#6372 Introduce `BootstrapPeers` as part of the new p2p stack. Peers to be connected on
  16. startup (@cmwaters)
  17. - [config] \#6462 Move `PrivValidator` configuration out of `BaseConfig` into its own section.
  18. - Apps
  19. - [ABCI] \#6408 Change the `key` and `value` fields from `[]byte` to `string` in the `EventAttribute` type. (@alexanderbez)
  20. - [ABCI] \#5447 Remove `SetOption` method from `ABCI.Client` interface
  21. - [ABCI] \#5447 Reset `Oneof` indexes for `Request` and `Response`.
  22. - [ABCI] \#5818 Use protoio for msg length delimitation. Migrates from int64 to uint64 length delimiters.
  23. - [Version] \#6494 `TMCoreSemVer` has been renamed to `TMVersion`.
  24. - It is not required any longer to set ldflags to set version strings
  25. - P2P Protocol
  26. - Go API
  27. - [logging] \#6534 Removed the existing custom Tendermint logger backed by go-kit. The logging interface, `Logger`, remains.
  28. Tendermint still provides a default logger backed by the performant zerolog logger. (@alexanderbez)
  29. - [mempool] \#6529 The `Context` field has been removed from the `TxInfo` type. `CheckTx` now requires a `Context` argument. (@alexanderbez)
  30. - [abci/client, proxy] \#5673 `Async` funcs return an error, `Sync` and `Async` funcs accept `context.Context` (@melekes)
  31. - [p2p] Removed unused function `MakePoWTarget`. (@erikgrinaker)
  32. - [libs/bits] \#5720 Validate `BitArray` in `FromProto`, which now returns an error (@melekes)
  33. - [proto/p2p] Renamed `DefaultNodeInfo` and `DefaultNodeInfoOther` to `NodeInfo` and `NodeInfoOther` (@erikgrinaker)
  34. - [proto/p2p] Rename `NodeInfo.default_node_id` to `node_id` (@erikgrinaker)
  35. - [libs/os] Kill() and {Must,}{Read,Write}File() functions have been removed. (@alessio)
  36. - [store] \#5848 Remove block store state in favor of using the db iterators directly (@cmwaters)
  37. - [state] \#5864 Use an iterator when pruning state (@cmwaters)
  38. - [types] \#6023 Remove `tm2pb.Header`, `tm2pb.BlockID`, `tm2pb.PartSetHeader` and `tm2pb.NewValidatorUpdate`.
  39. - Each of the above types has a `ToProto` and `FromProto` method or function which replaced this logic.
  40. - [light] \#6054 Move `MaxRetryAttempt` option from client to provider.
  41. - `NewWithOptions` now sets the max retry attempts and timeouts (@cmwaters)
  42. - [all] \#6077 Change spelling from British English to American (@cmwaters)
  43. - Rename "Subscription.Cancelled()" to "Subscription.Canceled()" in libs/pubsub
  44. - Rename "behaviour" pkg to "behavior" and internalized it in blockchain v2
  45. - [rpc/client/http] \#6176 Remove `endpoint` arg from `New`, `NewWithTimeout` and `NewWithClient` (@melekes)
  46. - [rpc/client/http] \#6176 Unexpose `WSEvents` (@melekes)
  47. - [rpc/jsonrpc/client/ws_client] \#6176 `NewWS` no longer accepts options (use `NewWSWithOptions` and `OnReconnect` funcs to configure the client) (@melekes)
  48. - [internal/libs] \#6366 Move `autofile`, `clist`,`fail`,`flowrate`, `protoio`, `sync`, `tempfile`, `test` and `timer` lib packages to an internal folder
  49. - [libs/rand] \#6364 Removed most of libs/rand in favour of standard lib's `math/rand` (@liamsi)
  50. - [mempool] \#6466 The original mempool reactor has been versioned as `v0` and moved to a sub-package under the root `mempool` package.
  51. Some core types have been kept in the `mempool` package such as `TxCache` and it's implementations, the `Mempool` interface itself
  52. and `TxInfo`. (@alexanderbez)
  53. - Blockchain Protocol
  54. - Data Storage
  55. - [store/state/evidence/light] \#5771 Use an order-preserving varint key encoding (@cmwaters)
  56. - [mempool] \#6396 Remove mempool's write ahead log (WAL), (previously unused by the tendermint code). (@tychoish)
  57. - Tooling
  58. - [tools] \#6498 Set OS home dir to instead of the hardcoded PATH. (@JayT106)
  59. ### FEATURES
  60. - [config] Add `--mode` flag and config variable. See [ADR-52](https://github.com/tendermint/tendermint/blob/master/docs/architecture/adr-052-tendermint-mode.md) @dongsam
  61. - [rpc] \#6329 Don't cap page size in unsafe mode (@gotjoshua, @cmwaters)
  62. - [pex] \#6305 v2 pex reactor with backwards compatability. Introduces two new pex messages to
  63. accomodate for the new p2p stack. Removes the notion of seeds and crawling. All peer
  64. exchange reactors behave the same. (@cmwaters)
  65. - [crypto] \#6376 Enable sr25519 as a validator key
  66. - [mempool] \#6466 Introduction of a prioritized mempool. (@alexanderbez)
  67. - `Priority` and `Sender` have been introduced into the `ResponseCheckTx` type, where the `priority` will determine the prioritization of
  68. the transaction when a proposer reaps transactions for a block proposal. The `sender` field acts as an index.
  69. - Operators may toggle between the legacy mempool reactor, `v0`, and the new prioritized reactor, `v1`, by setting the
  70. `mempool.version` configuration, where `v1` is the default configuration.
  71. - Applications that do not specify a priority, i.e. zero, will have transactions reaped by the order in which they are received by the node.
  72. - Transactions are gossiped in FIFO order as they are in `v0`.
  73. - [config/indexer] \#6411 Introduce support for custom event indexing data sources, specifically PostgreSQL. (@JayT106)
  74. ### IMPROVEMENTS
  75. - [types] \#6478 Add `block_id` to `newblock` event (@jeebster)
  76. - [crypto/ed25519] \#5632 Adopt zip215 `ed25519` verification. (@marbar3778)
  77. - [privval] \#5603 Add `--key` to `init`, `gen_validator`, `testnet` & `unsafe_reset_priv_validator` for use in generating `secp256k1` keys.
  78. - [privval] \#5725 Add gRPC support to private validator.
  79. - [privval] \#5876 `tendermint show-validator` will query the remote signer if gRPC is being used (@marbar3778)
  80. - [abci/client] \#5673 `Async` requests return an error if queue is full (@melekes)
  81. - [mempool] \#5673 Cancel `CheckTx` requests if RPC client disconnects or times out (@melekes)
  82. - [abci] \#5706 Added `AbciVersion` to `RequestInfo` allowing applications to check ABCI version when connecting to Tendermint. (@marbar3778)
  83. - [blockchain/v1] \#5728 Remove in favor of v2 (@melekes)
  84. - [blockchain/v0] \#5741 Relax termination conditions and increase sync timeout (@melekes)
  85. - [cli] \#5772 `gen_node_key` output now contains node ID (`id` field) (@melekes)
  86. - [blockchain/v2] \#5774 Send status request when new peer joins (@melekes)
  87. - [consensus] \#5792 Deprecates the `time_iota_ms` consensus parameter, to reduce the bug surface. The parameter is no longer used. (@valardragon)
  88. - [store] \#5888 store.SaveBlock saves using batches instead of transactions for now to improve ACID properties. This is a quick fix for underlying issues around tm-db and ACID guarantees. (@githubsands)
  89. - [consensus] \#5987 Remove `time_iota_ms` from consensus params. Merge `tmproto.ConsensusParams` and `abci.ConsensusParams`. (@marbar3778)
  90. - [types] \#5994 Reduce the use of protobuf types in core logic. (@marbar3778)
  91. - `ConsensusParams`, `BlockParams`, `ValidatorParams`, `EvidenceParams`, `VersionParams`, `sm.Version` and `version.Consensus` have become native types. They still utilize protobuf when being sent over the wire or written to disk.
  92. - [rpc/client/http] \#6163 Do not drop events even if the `out` channel is full (@melekes)
  93. - [node] \#6059 Validate and complete genesis doc before saving to state store (@silasdavis)
  94. - [state] \#6067 Batch save state data (@githubsands & @cmwaters)
  95. - [crypto] \#6120 Implement batch verification interface for ed25519 and sr25519. (@marbar3778)
  96. - [types] \#6120 use batch verification for verifying commits signatures.
  97. - If the key type supports the batch verification API it will try to batch verify. If the verification fails we will single verify each signature.
  98. - [privval/file] \#6185 Return error on `LoadFilePV`, `LoadFilePVEmptyState`. Allows for better programmatic control of Tendermint.
  99. - [privval] \#6240 Add `context.Context` to privval interface.
  100. - [rpc] \#6265 set cache control in http-rpc response header (@JayT106)
  101. - [statesync] \#6378 Retry requests for snapshots and add a minimum discovery time (5s) for new snapshots.
  102. - [node/state] \#6370 graceful shutdown in the consensus reactor (@JayT106)
  103. - [crypto/merkle] \#6443 Improve HashAlternatives performance (@cuonglm)
  104. - [crypto/merkle] \#6513 Optimize HashAlternatives (@marbar3778)
  105. - [p2p/pex] \#6509 Improve addrBook.hash performance (@cuonglm)
  106. - [consensus/metrics] \#6549 Change block_size gauge to a histogram for better observability over time (@marbar3778)
  107. ### BUG FIXES
  108. - [privval] \#5638 Increase read/write timeout to 5s and calculate ping interval based on it (@JoeKash)
  109. - [blockchain/v1] [\#5701](https://github.com/tendermint/tendermint/pull/5701) Handle peers without blocks (@melekes)
  110. - [blockchain/v1] \#5711 Fix deadlock (@melekes)
  111. - [evidence] \#6375 Fix bug with inconsistent LightClientAttackEvidence hashing (@cmwaters)
  112. - [statesync] \#6463 Adds Reverse Sync feature to fetch historical light blocks after state sync in order to verify any evidence (@cmwaters)