Integer overflow in the tr_bitfieldEnsureNthBitAlloced function in bitfield.c in Transmission before 2.84 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a crafted peer message, which triggers an out-of-bounds write.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Ubuntu_linux | Canonical | 12.04 (including) | 12.04 (including) |
Ubuntu_linux | Canonical | 13.10 (including) | 13.10 (including) |
Ubuntu_linux | Canonical | 14.04 (including) | 14.04 (including) |
Fedora | Fedoraproject | 20 (including) | 20 (including) |
Linux | Gentoo | * | * |
Transmission | Ubuntu | devel | * |
Transmission | Ubuntu | lucid | * |
Transmission | Ubuntu | precise | * |
Transmission | Ubuntu | saucy | * |
Transmission | Ubuntu | trusty | * |
Transmission | Ubuntu | upstream | * |