PT-2008-2269 · Libtorrent+1 · Libtorrent+1

Publicado

2008-02-07

·

Atualizado

2011-03-08

·

CVE-2008-0646

CVSS v2.0

7.8

Alta

VetorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions libtorrent versions prior to 0.12.1 Deluge versions prior to 0.5.8.3
Description The issue allows context-dependent attackers to cause a denial of service, resulting in stack exhaustion and crash, via a crafted bencoded message. This is due to a problem in the bdecode recursive function in include/libtorrent/bencode.hpp.
Recommendations For libtorrent versions prior to 0.12.1, update to version 0.12.1 or later. For Deluge versions prior to 0.5.8.3, update to version 0.5.8.3 or later.

Exploit

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2008-0646

Produtos afetados

Deluge
Libtorrent