4.3

CVE-2008-0071

The Web UI interface in (1) BitTorrent before 6.0.3 build 8642 and (2) uTorrent before 1.8beta build 10524 allows remote attackers to cause a denial of service (application crash) via an HTTP request with a malformed Range header.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
BittorrentBittorrent Version <= 6.0.2
BittorrentBittorrent Version3.9.1
BittorrentBittorrent Version4.0.0
BittorrentBittorrent Version4.0.1
BittorrentBittorrent Version4.0.2
BittorrentBittorrent Version4.0.3
BittorrentBittorrent Version4.0.4
BittorrentBittorrent Version4.1.0
BittorrentBittorrent Version4.1.1
BittorrentBittorrent Version4.1.2
BittorrentBittorrent Version4.1.3
BittorrentBittorrent Version4.1.4
BittorrentBittorrent Version4.1.5
BittorrentBittorrent Version4.1.6
BittorrentBittorrent Version4.1.7
BittorrentBittorrent Version4.1.8
BittorrentBittorrent Version4.2.0
BittorrentBittorrent Version4.2.1
BittorrentBittorrent Version4.2.2
BittorrentBittorrent Version4.3.0
BittorrentBittorrent Version4.3.1
BittorrentBittorrent Version4.3.2
BittorrentBittorrent Version4.3.3
BittorrentBittorrent Version4.3.4
BittorrentBittorrent Version4.3.5
BittorrentBittorrent Version4.3.6
BittorrentBittorrent Version4.4.0
BittorrentBittorrent Version4.4.1
BittorrentBittorrent Version4.9.2
BittorrentBittorrent Version4.9.3
BittorrentBittorrent Version4.9.4
BittorrentBittorrent Version4.9.5
BittorrentBittorrent Version4.9.6
BittorrentBittorrent Version4.9.7
BittorrentBittorrent Version4.9.8
BittorrentBittorrent Version4.9.9
BittorrentBittorrent Version4.20.0
BittorrentBittorrent Version4.20.1
BittorrentBittorrent Version4.20.2
BittorrentBittorrent Version4.20.4
BittorrentBittorrent Version4.20.6
BittorrentBittorrent Version4.20.7
BittorrentBittorrent Version4.20.8
BittorrentBittorrent Version4.20.9
BittorrentBittorrent Version4.22.0
BittorrentBittorrent Version4.22.1
BittorrentBittorrent Version4.22.4
BittorrentBittorrent Version4.24.0
BittorrentBittorrent Version4.24.2
BittorrentBittorrent Version4.26.0
BittorrentBittorrent Version4.27.1
BittorrentBittorrent Version4.27.2
BittorrentBittorrent Version5.0.0
BittorrentBittorrent Version5.0.1
BittorrentBittorrent Version5.0.2
BittorrentBittorrent Version5.0.3
BittorrentBittorrent Version5.0.4
BittorrentBittorrent Version5.0.5
BittorrentBittorrent Version5.0.6
BittorrentBittorrent Version5.0.7
BittorrentBittorrent Version5.0.8
BittorrentBittorrent Version5.0.9
BittorrentBittorrent Version5.2.0
BittorrentBittorrent Version6.0
BittorrentBittorrent Version6.0.1
UtorrentUtorrent Version <= 1.7.7
UtorrentUtorrent Version1.1.1
UtorrentUtorrent Version1.1.3
UtorrentUtorrent Version1.1.4
UtorrentUtorrent Version1.1.5
UtorrentUtorrent Version1.1.6
UtorrentUtorrent Version1.1.7
UtorrentUtorrent Version1.2
UtorrentUtorrent Version1.2.1
UtorrentUtorrent Version1.2.2
UtorrentUtorrent Version1.3
UtorrentUtorrent Version1.4
UtorrentUtorrent Version1.4.2
UtorrentUtorrent Version1.5
UtorrentUtorrent Version1.6
UtorrentUtorrent Version1.7
UtorrentUtorrent Version1.7.1
UtorrentUtorrent Version1.7.2
UtorrentUtorrent Version1.7.3
UtorrentUtorrent Version1.7.4
UtorrentUtorrent Version1.7.5
UtorrentUtorrent Version1.7.6
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 7.19% 0.935
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:N/A:P
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

http://secunia.com/advisories/28703
Vendor Advisory
http://secunia.com/advisories/30605
Vendor Advisory
http://secunia.com/secunia_research/2008-7/advisory/
Vendor Advisory
http://securityreason.com/securityalert/3943
http://securitytracker.com/id?1020266
http://www.securityfocus.com/archive/1/493269/100/0/threaded
http://www.securityfocus.com/bid/29661
Patch
http://www.securitytracker.com/id?1020265
http://www.vupen.com/english/advisories/2008/1808
http://www.vupen.com/english/advisories/2008/1809
https://www.exploit-db.com/exploits/5918