CVE-2018-25042

MEDIUM

uTorrent - Remote Code Execution via Memory Corruption

Title source: llm
STIX 2.1

Description

A vulnerability classified as critical has been found in uTorrent. This affects an unknown part. The manipulation leads to memory corruption. It is possible to initiate the attack remotely. It is recommended to upgrade the affected component.

References (3)

Core 3
Core References
Exploit, Issue Tracking, Mailing List, Third Party Advisory x_refsource_misc
https://bugs.chromium.org/p/project-zero/issues/detail?id=1524
Exploit, Third Party Advisory, VDB Entry x_refsource_misc
https://vuldb.com/?id.113805

Scores

CVSS v3 5.0
EPSS 0.0093
EPSS Percentile 56.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:L

CISA SSVC

Vulnrichment
Exploitation poc
Automatable no
Technical Impact partial

Details

CWE
CWE-119 CWE-787
Status published
Products (1)
bittorrent/utorrent
Published Jun 17, 2022
Tracked Since Feb 18, 2026