PT-2010-3479 · Transmission · Transmission

Pjz

·

Publicado

2010-05-07

·

Atualizado

2010-05-11

·

CVE-2010-1853

CVSS v2.0

6.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Transmission version 1.91
Description The issue is related to multiple stack-based buffer overflows in the tr magnetParse function, which can be triggered by a crafted magnet URL containing a large number of tr or ws links. This can cause a denial of service (crash) or potentially allow the execution of arbitrary code.
Recommendations For Transmission version 1.91, consider disabling the tr magnetParse function as a temporary workaround until a patch is available. Restrict access to magnet URLs with multiple tr or ws links to minimize the risk of exploitation.

Correção

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2010-1853

Produtos afetados

Transmission