PT-2010-3479 · Transmission · Transmission

Pjz

·

Published

2010-05-07

·

Updated

2010-05-11

·

CVE-2010-1853

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Transmission version 1.91
Description The issue is related to multiple stack-based buffer overflows in the tr magnetParse function, which can be triggered by a crafted magnet URL containing a large number of tr or ws links. This can cause a denial of service (crash) or potentially allow the execution of arbitrary code.
Recommendations For Transmission version 1.91, consider disabling the tr magnetParse function as a temporary workaround until a patch is available. Restrict access to magnet URLs with multiple tr or ws links to minimize the risk of exploitation.

Fix

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-1853

Affected Products

Transmission