PT-2008-2269 · Libtorrent+1 · Libtorrent+1

Published

2008-02-07

·

Updated

2011-03-08

·

CVE-2008-0646

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions libtorrent versions prior to 0.12.1 Deluge versions prior to 0.5.8.3
Description The issue allows context-dependent attackers to cause a denial of service, resulting in stack exhaustion and crash, via a crafted bencoded message. This is due to a problem in the bdecode recursive function in include/libtorrent/bencode.hpp.
Recommendations For libtorrent versions prior to 0.12.1, update to version 0.12.1 or later. For Deluge versions prior to 0.5.8.3, update to version 0.5.8.3 or later.

Exploit

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2008-0646

Affected Products

Deluge
Libtorrent