From 45a2d2a83fb8335cb7177cca2dd5c524e660aab3 Mon Sep 17 00:00:00 2001 From: Miroslav Stampar Date: Fri, 15 Nov 2019 22:42:56 +0100 Subject: [PATCH] Bug fix (TLS/SNI sites misbehaved over --tor/--proxy) --- lib/core/settings.py | 2 +- lib/request/httpshandler.py | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/lib/core/settings.py b/lib/core/settings.py index 09c6a99d9..d55e14da5 100644 --- a/lib/core/settings.py +++ b/lib/core/settings.py @@ -18,7 +18,7 @@ from lib.core.enums import OS from thirdparty.six import unichr as _unichr # sqlmap version (...) -VERSION = "1.3.11.60" +VERSION = "1.3.11.61" TYPE = "dev" if VERSION.count('.') > 2 and VERSION.split('.')[-1] != '0' else "stable" TYPE_COLORS = {"dev": 33, "stable": 90, "pip": 34} VERSION_STRING = "sqlmap/%s#%s" % ('.'.join(VERSION.split('.')[:-1]) if VERSION.count('.') > 2 and VERSION.split('.')[-1] == '0' else VERSION, TYPE) diff --git a/lib/request/httpshandler.py b/lib/request/httpshandler.py index 73f1fc651..ff08ea3a2 100644 --- a/lib/request/httpshandler.py +++ b/lib/request/httpshandler.py @@ -51,7 +51,7 @@ class HTTPSConnection(_http_client.HTTPSConnection): # Reference(s): https://docs.python.org/2/library/ssl.html#ssl.SSLContext # https://www.mnot.net/blog/2014/12/27/python_2_and_tls_sni - if re.search(r"\A[\d.]+\Z", self.host) is None and kb.tlsSNI.get(self.host) is not False and not any((conf.proxy, conf.tor)) and hasattr(ssl, "SSLContext"): + if re.search(r"\A[\d.]+\Z", self.host) is None and kb.tlsSNI.get(self.host) is not False and hasattr(ssl, "SSLContext"): for protocol in [_ for _ in _protocols if _ >= ssl.PROTOCOL_TLSv1]: try: sock = create_sock()