Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

suse-cvrf логотип

openSUSE-SU-2016:2283-1

Опубликовано: 10 сент. 2016
Источник: suse-cvrf

Описание

Recommended update for libtorrent-rasterbar

This update for libtorrent-rasterbar fixes the following issues:

  • Update to version 1.0.10:
    • Fix inverted priority of incoming piece suggestions.
    • Fix a crash on invalid input in http_parser.
    • Add a new 'preformatted' type to bencode entry variant type.
    • Fix division by zero in super-seeding logic

Список пакетов

openSUSE Leap 42.1
libtorrent-rasterbar-1.0.10-11.2
libtorrent-rasterbar-devel-1.0.10-11.2
libtorrent-rasterbar-doc-1.0.10-11.2
libtorrent-rasterbar8-1.0.10-11.2
python-libtorrent-rasterbar-1.0.10-11.2

Описание

The parse_chunk_header function in libtorrent before 1.1.1 allows remote attackers to cause a denial of service (crash) via a crafted (1) HTTP response or possibly a (2) UPnP broadcast.


Затронутые продукты
openSUSE Leap 42.1:libtorrent-rasterbar-1.0.10-11.2
openSUSE Leap 42.1:libtorrent-rasterbar-devel-1.0.10-11.2
openSUSE Leap 42.1:libtorrent-rasterbar-doc-1.0.10-11.2
openSUSE Leap 42.1:libtorrent-rasterbar8-1.0.10-11.2

Ссылки
Уязвимость openSUSE-SU-2016:2283-1