CVE-2008-7166: Buffer Overflow
Buffer overflow in the web interface in BitTorrent 6.0.1 (build 7859) and earlier, and uTorrent 1.7.6 (build 7859) and earlier, allows remote attackers to cause a denial of service (memory consumption and crash) via a crafted Range header. NOTE: this is probably a different vulnerability than CVE-2008-0071 and CVE-2008-0364.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-7166?
CVE-2008-7166 is classified as a high severity vulnerability due to its potential to allow remote attackers to crash the application, leading to a denial of service.
How do I fix CVE-2008-7166?
To mitigate CVE-2008-7166, users should upgrade to a later version of BitTorrent or uTorrent that addresses the vulnerability.
What versions are affected by CVE-2008-7166?
CVE-2008-7166 affects BitTorrent versions up to 6.0.1 and uTorrent versions up to 1.7.6.
What type of vulnerability is CVE-2008-7166?
CVE-2008-7166 is a buffer overflow vulnerability in the web interface of BitTorrent and uTorrent.
Can CVE-2008-7166 be exploited remotely?
Yes, CVE-2008-7166 can be exploited remotely by sending a crafted Range header to the vulnerable application.