CVE-2007-1384 Information

Description

Directory traversal vulnerability in torrent.cpp in KTorrent before 2.1.2 allows remote attackers to overwrite arbitrary files via ..\ sequences in a torrent filename.

Reference

http://ktorrent.org/forum/viewtopic.php?t=1401 http://lists.kde.org/?l=kde-announce&m=117346514411140&w=2 http://secunia.com/advisories/24459 http://secunia.com/advisories/24486 http://secunia.com/advisories/24753 http://secunia.com/advisories/24995 http://secunia.com/advisories/25097 http://security.gentoo.org/glsa/glsa-200705-01.xml http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.401332 http://www.novell.com/linux/security/advisories/2007_007_suse.html http://www.securityfocus.com/bid/22930 http://www.securitytracker.com/id?1017747 http://www.ubuntu.com/usn/usn-436-1 http://www.vupen.com/english/advisories/2007/0913 https://launchpad.net/bugs/91174

Share on: