First published: Sat Mar 10 2007(Updated: )
Directory traversal vulnerability in torrent.cpp in KTorrent before 2.1.2 allows remote attackers to overwrite arbitrary files via ".." sequences in a torrent filename.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
joris guisson KTorrent | <=2.1.1 | |
KTorrent | <=2.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-1384 is classified as a medium severity vulnerability due to its potential for file overwriting and compromise of system integrity.
To fix CVE-2007-1384, upgrade KTorrent to version 2.1.2 or later, which addresses this directory traversal vulnerability.
KTorrent versions prior to 2.1.2, including 2.1.1 and earlier, are affected by CVE-2007-1384.
CVE-2007-1384 is a directory traversal vulnerability that allows attackers to manipulate file paths and potentially overwrite files.
Users of KTorrent versions 2.1.1 and earlier can be affected by CVE-2007-1384, particularly in environments where untrusted torrent files are processed.