Lucene search

K
cveMitreCVE-2010-1853
HistoryMay 07, 2010 - 8:30 p.m.

CVE-2010-1853

2010-05-0720:30:01
CWE-119
mitre
web.nvd.nist.gov
25
cve-2010-1853
stack-based buffer overflow
libtransmission
magnet.c
transmission
denial of service
remote code execution

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

8

Confidence

High

EPSS

0.052

Percentile

93.1%

Multiple stack-based buffer overflows in the tr_magnetParse function in libtransmission/magnet.c in Transmission 1.91 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted magnet URL with a large number of (1) tr or (2) ws links.

Affected configurations

Nvd
Node
transmissionbttransmissionMatch1.91
VendorProductVersionCPE
transmissionbttransmission1.91cpe:2.3:a:transmissionbt:transmission:1.91:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

8

Confidence

High

EPSS

0.052

Percentile

93.1%