Get the NEW Torrent Search NOW!!



uTorrent "Highly Critical" Vulnerability Discovered

posted by soulxtc in bittorrent // 110 days 13 hours 2 minutes ago

Also affects the official BitTorrent client server.


Rhys Kidd of Insecure.org's "Dailydave" is reporting the recent discovery of "vulnerable uTorrent code" that affects both uTorrent as well as the official BitTorrent client server.


"A vulnerability has been discovered in BitTorrent, which potentially can be exploited by malicious people to compromise a user's system," reads a security warning.


The exploit is confirmed in uTorrent version 1.7.7 (build 8179), but is solved by simply updating to version 1.8 stable, which was just released.


It's also confirmed in the official BitTorrent version 6.0.3 (build 8642), but the only solution far is to refrain from opening untrusted ".torrent" files.


"The vulnerability is caused due to a boundary error in the processing of '.torrent' files," continues the security warning. "This can be exploited to cause a stack-based buffer overflow by tricking the user into opening a ".torrent" file containing an overly long 'created by' field."


Successful exploitation of the vulnerability may allow malicious users to inject arbitrary code.


  • #1    Makes me wonder who are these malicious users that do inject arbitary code, and what would they actually gain from doing this.
    posted by Petrena 110 days 11 hours 29 minutes ago
  • #2    Remember the wanker that was dropping viruses on filesharing PCs? probably more of that jazz...
    posted by Mord_Sith 110 days 3 hours 11 minutes ago
  • #3    Do people like this who waste their lives doing these retarded things actually have a day job or any useful purpose?... why do they make me think about parasites...like nits or some kind of fungal infection? = S
    posted by TheRealMcCoy 107 days 15 hours 23 minutes ago

Login to ZeroPaid.com
Username
Password

* Be sure that you have cookies enabled in your browser, without them you will not be able to login correctly.

Register here if you are not a member of Zeropaid.com.

members that voted for this story

    © 2000 - 2008 Zeropaid Inc, All rights reserved.
    Company Info | Contact Us | Zeropaid Crew | Advertise | Cheap Cars
    Hosting Provided by:
    San Diego Colocation - Complex Drive