Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-4909

Опубликовано: 29 июл. 2014
Источник: debian
EPSS Низкий

Описание

Integer overflow in the tr_bitfieldEnsureNthBitAlloced function in bitfield.c in Transmission before 2.84 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted peer message, which triggers an out-of-bounds write.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
transmissionfixed2.84-0.1package
transmissionnot-affectedsqueezepackage

Примечания

  • http://trac.transmissionbt.com/wiki/Changes#version-2.84

  • PoC: http://web.archive.org/web/20140815000641/http://inertiawar.com:80/submission.go

EPSS

Процентиль: 93%
0.09187
Низкий

Связанные уязвимости

ubuntu
больше 11 лет назад

Integer overflow in the tr_bitfieldEnsureNthBitAlloced function in bitfield.c in Transmission before 2.84 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted peer message, which triggers an out-of-bounds write.

nvd
больше 11 лет назад

Integer overflow in the tr_bitfieldEnsureNthBitAlloced function in bitfield.c in Transmission before 2.84 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted peer message, which triggers an out-of-bounds write.

github
больше 3 лет назад

Integer overflow in the tr_bitfieldEnsureNthBitAlloced function in bitfield.c in Transmission before 2.84 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted peer message, which triggers an out-of-bounds write.

EPSS

Процентиль: 93%
0.09187
Низкий