vendor:
uTorrent
by:
Dr_IDE
7,5
CVSS
HIGH
Buffer Overflow
119
CWE
Product Name: uTorrent
Affected Version From: 1.8.3 (Build 15772)
Affected Version To: 1.8.3 (Build 15772)
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2009
uTorrent <= 1.8.3 (Build 15772) Create New Torrent Buffer Overflow PoC
This PoC exploits a buffer overflow vulnerability in uTorrent version 1.8.3 (Build 15772) by creating a malicious file containing a string of 9000 'A' characters. When the malicious file is added to the 'Source' field of the 'Create New Torrent' window, the buffer overflow occurs, potentially allowing an attacker to execute arbitrary code.
Mitigation:
Upgrade to uTorrent version 1.8.3 (Build 16010) or later.