VDB
CVE-2008-0364
CVE-2008-0364
PUBLISHED
CVSS 5 MEDIUM
Buffer overflow in (1) BitTorrent 6.0 and earlier; and (2) uTorrent 1.7.5 and earlier, and 1.8-alpha-7834 and earlier in the 1.8.x series; on Windows allows remote attackers to cause a denial of service (application crash) via a long Unicode string representing a client version identifier.
EPSS 8.89% · 94.7th percentile
Risk Scores
CVSS 2.0
5
EPSS Score
8.89%
94.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| n/a | n/a | n/a |
| utorrent | utorrent | 0, * |
| bittorrent | bittorrent | 0 |
Timeline
- Jan 18, 2008 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 1, 2022 CVE Updated
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 27, 2022 EPSS Score
- Dec 18, 2022 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 26, 2023 EPSS Score
- Jul 17, 2023 EPSS Score
References
- 27321 vdb
- http://aluigi.org/poc/ruttorrent.zip url
- 28537 third-party-advisory
- 28533 third-party-advisory
- 20080116 Peers static overflow in BitTorrent 6.0 and uTorrent 1.7.5 mailing-list
- http://forum.utorrent.com/viewtopic.php?id=29330 url
- 3554 third-party-advisory
- http://aluigi.altervista.org/adv/ruttorrent-adv.txt url
- utorrent-peers-bo(39720) vdb
- http://download.utorrent.com/1.7.6/utorrent-1.7.6.txt url
- bittorrent-peers-bo(39719) vdb
- https://nvd.nist.gov/vuln/detail/CVE-2008-0364 advisory