CVE-2008-0646Improper Restriction of Operations within the Bounds of a Memory Buffer in Team Deluge

Severity
7.8HIGHNVD
EPSS
4.0%
top 11.49%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedFeb 7
Latest updateMay 1

Description

The bdecode_recursive function in include/libtorrent/bencode.hpp in Rasterbar Software libtorrent before 0.12.1, as used in Deluge before 0.5.8.3 and other products, allows context-dependent attackers to cause a denial of service (stack exhaustion and crash) via a crafted bencoded message.

CVSS vector

AV:N/AC:L/C:N/I:N/A:CExploitability: 10.0 | Impact: 6.9

Affected Packages2 packages

Patches

🔴Vulnerability Details

1
GHSA
GHSA-r58h-mh9m-crp8: The bdecode_recursive function in include/libtorrent/bencode2022-05-01