7.5
CVSSv2

CVE-2015-5685

Published: 13/08/2015 Updated: 13/08/2015
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The lazy_bdecode function in BitTorrent DHT bootstrap server (bootstrap-dht ) allows remote malicious users to execute arbitrary code via a crafted packet, related to "improper indexing."

Vulnerable Product Search on Vulmon Subscribe to Product

bittorrent bootstrap-dht -

Vendor Advisories

Debian Bug report logs - #797046 CVE-2015-5685: remote execution vulnerability in lazy_bdecode() Package: src:libtorrent-rasterbar; Maintainer for src:libtorrent-rasterbar is Cristian Greco <cristian@debianorg>; Reported by: Raphael Hertzog <hertzog@debianorg> Date: Thu, 27 Aug 2015 10:21:06 UTC Severity: grave Tag ...