Lucene search

K
ubuntucveUbuntu.comUB:CVE-2014-4909
HistoryJul 11, 2014 - 12:00 a.m.

CVE-2014-4909

2014-07-1100:00:00
ubuntu.com
ubuntu.com
11

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.037

Percentile

91.9%

Integer overflow in the tr_bitfieldEnsureNthBitAlloced function in
bitfield.c in Transmission before 2.84 allows remote attackers to cause a
denial of service and possibly execute arbitrary code via a crafted peer
message, which triggers an out-of-bounds write.

Bugs

OSVersionArchitecturePackageVersionFilename
ubuntu12.04noarchtransmission< 2.51-0ubuntu1.4UNKNOWN
ubuntu13.10noarchtransmission< 2.82-0ubuntu1.1UNKNOWN
ubuntu14.04noarchtransmission< 2.82-1.1ubuntu3.1UNKNOWN

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

EPSS

0.037

Percentile

91.9%