The bencoding parser in BitTorrent uTorrent through 3.5.5 (build 45505) misparses nested bencoded dictionaries, which allows a remote attacker to cause a denial of service.
References
Link | Resource |
---|---|
https://blog.whtaguy.com/2020/09/utorrent-cve-2020-8437-vulnerability.html | Exploit Third Party Advisory |
https://forum.utorrent.com/forum/13-announcements/ | Vendor Advisory |
https://twitter.com/va_start | Third Party Advisory |
https://utclient.utorrent.com/offers/beta_release_notes/release_notes.html | Release Notes Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-03-02T18:33:37
Updated: 2020-09-29T13:33:49
Reserved: 2020-01-29T00:00:00
Link: CVE-2020-8437
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-03-02T19:15:12.757
Modified: 2022-05-03T14:29:36.200
Link: CVE-2020-8437
JSON object: View
Redhat Information
No data.
CWE