24130Third-party advisory
http://secunia.com/advisories/24130 CVE-2007-0927
μTorrent (uTorrent) 1.6 build 474 - 'announce' Key Remote Heap Overflow
Record summary
CVE-2007-0927 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.
Description
Heap-based buffer overflow in uTorrent 1.6 allows remote attackers to execute arbitrary code via a torrent file with a crafted announce header.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBμTorrent (uTorrent) 1.6 build 474 - 'announce' Key Remote Heap OverflowExploitDB exploitby defsecNot analyzed1 file
References
933180vdb entry
http://www.osvdb.org/33180 20070216 utorrent issue?mailing list
http://www.securityfocus.com/archive/1/460346/100/0/threaded 22530vdb entry
http://www.securityfocus.com/bid/22530 1017648vdb entry
http://www.securitytracker.com/id?1017648 ADV-2007-0571vdb entry
http://www.vupen.com/english/advisories/2007/0571 utorrent-torrent-bo(32455)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/32455 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2007-0927 3296exploit
https://www.exploit-db.com/exploits/3296