First published: Sat Mar 10 2007(Updated: )
chunkcounter.cpp in KTorrent before 2.1.2 allows remote attackers to cause a denial of service (crash) and heap corruption via a negative or large idx value.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
joris guisson KTorrent | <=2.1.1 | |
KTorrent | <=2.1.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-1385 has been classified as a high severity vulnerability due to its potential to cause denial of service and heap corruption.
To fix CVE-2007-1385, upgrade KTorrent to version 2.1.2 or later.
CVE-2007-1385 can be exploited by remote attackers to crash the application and potentially corrupt heap memory.
KTorrent versions prior to 2.1.2, specifically up to version 2.1.1, are vulnerable to CVE-2007-1385.
CVE-2007-1385 is a remote vulnerability, allowing attackers to cause issues without needing local access.