28703Third-party advisory
http://secunia.com/advisories/28703 CVE-2008-0071
μTorrent (uTorrent) / BitTorrent WebIU HTTP 1.7.7/6.0.1 - Range header Denial of Service
Record summary
CVE-2008-0071 has a selected CVSS score of 4.3; EIP currently links 1 catalogued exploit.
Description
The Web UI interface in (1) BitTorrent before 6.0.3 build 8642 and (2) uTorrent before 1.8beta build 10524 allows remote attackers to cause a denial of service (application crash) via an HTTP request with a malformed Range header.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBμTorrent (uTorrent) / BitTorrent WebIU HTTP 1.7.7/6.0.1 - Range header Denial of ServiceExploitDB exploitby ExodusNot analyzed1 file
References
1230605Third-party advisory
http://secunia.com/advisories/30605 secunia.com
http://secunia.com/secunia_research/2008-7/advisory 3943Third-party advisory
http://securityreason.com/securityalert/3943 1020266vdb entry
http://securitytracker.com/id?1020266 20080611 Secunia Research: uTorrent / BitTorrent Web UI HTTP "Range" Header DoSmailing list
http://www.securityfocus.com/archive/1/493269/100/0/threaded 29661vdb entry
http://www.securityfocus.com/bid/29661 1020265vdb entry
http://www.securitytracker.com/id?1020265 ADV-2008-1808vdb entry
http://www.vupen.com/english/advisories/2008/1808 ADV-2008-1809vdb entry
http://www.vupen.com/english/advisories/2008/1809 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2008-0071 5918exploit
https://www.exploit-db.com/exploits/5918