VDB
CVE-2008-0646
CVE-2008-0646
PUBLISHED
CVSS 7.800000190734863 HIGH
The bdecode_recursive function in include/libtorrent/bencode.hpp in Rasterbar Software libtorrent before 0.12.1, as used in Deluge before 0.5.8.3 and other products, allows context-dependent attackers to cause a denial of service (stack exhaustion and crash) via a crafted bencoded message.
EPSS 4.04% · 88.7th percentile
Risk Scores
CVSS 2.0
7.800000190734863
EPSS Score
4.04%
88.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| rasterbar_software | libtorrent | 0 |
| n/a | n/a | n/a |
| deluge_team | deluge | 0 |
Timeline
- Feb 7, 2008 CVE Published
- Feb 4, 2022 EPSS Score
- Mar 29, 2022 EPSS Score
- May 1, 2022 CVE Updated
- Jul 12, 2022 EPSS Score
- Sep 4, 2022 EPSS Score
- Oct 26, 2022 EPSS Score
- Feb 9, 2023 EPSS Score
- Mar 7, 2023 EPSS Score
- Apr 3, 2023 EPSS Score
- May 25, 2023 EPSS Score
- Sep 8, 2023 EPSS Score
References
- 28782 third-party-advisory
- http://deluge-torrent.org/Changelog.php url
- http://libtorrent.svn.sourceforge.net/viewvc/libtorrent/branches/RC_0_12/include/libtorrent/bencode.hpp?r1=956&r2=1968&pathrev=1968 url
- http://libtorrent.svn.sourceforge.net/viewvc/libtorrent/trunk/include/libtorrent/bencode.hpp?view=log&pathrev=1968 url
- http://libtorrent.svn.sourceforge.net/viewvc/libtorrent/branches/RC_0_13/include/libtorrent/bencode.hpp?view=log&pathrev=1968 url
- FEDORA-2008-1198 vendor-advisory
- 28781 third-party-advisory
- 28700 third-party-advisory
- ADV-2008-0384 vdb
- http://libtorrent.svn.sourceforge.net/viewvc/libtorrent/branches/RC_0_12/include/libtorrent/bencode.hpp?view=log&pathrev=1968#rev1968 url
- 28699 third-party-advisory
- 27597 vdb
- ADV-2008-0383 vdb
- https://nvd.nist.gov/vuln/detail/CVE-2008-0646 advisory